rabota.exe

The application rabota.exe has been detected as a potentially unwanted program by 29 anti-malware scanners.
MD5:
c351ae7d1c20086dbb667ea976c569e3

SHA-1:
a7706089279138305d405b0265d2c94e1d6add5c

SHA-256:
ba535673585e98af825dd8e22d849ab204f97fb703bbecd37c7a4786203f40ed

Scanner detections:
29 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 9:26:32 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Graftor.316246
-40

AegisLab AV Signature
Backdoor.Bat.Ra!c
2.1.4+

Avira AntiVirus
BDS/Backdoor.Gen2
8.3.3.4

Arcabit
Trojan.Graftor.D418B3
1.0.0.795

avast!
Win32:PUP-gen [PUP]
2014.9-170316

AVG
RemoteAdmin
2018.0.2438

Baidu Antivirus
VBS.Worm.Agent
4.0.3.17316

Bitdefender
Gen:Variant.Graftor.316246
1.0.20.375

Comodo Security
TrojWare.Win32.Generic.usubc
26591

Dr.Web
VBS.Starter.65
9.0.1.075

Emsisoft Anti-Malware
Gen:Variant.Graftor.316246
8.17.03.16.11

ESET NOD32
BAT/RA-based.DU
11.14936

Fortinet FortiGate
Riskware/RemoteAdmin_RemoteUtilities
3/16/2017

F-Secure
Gen:Variant.Graftor.316246
11.2017-16-03_5

G Data
Gen:Variant.Graftor.316246
17.3.25

IKARUS anti.virus
not-a-virus:RemoteAdmin.Win32.RMS
0.1.3.4

K7 AntiVirus
Trojan
13.251.22418

Kaspersky
Backdoor.BAT.RA-based
14.0.0.-1317

Malwarebytes
PUP.Optional.RemoteUtilities
v2017.03.16.11

McAfee
Artemis!B8667A1E8456
5600.6094

Microsoft Security Essentials
Trojan:Win32/Itagomoko!rfn
1.1.13407.0

NANO AntiVirus
Trojan.Script.Mlw.eflenj
1.0.70.15190

Panda Antivirus
Trj/CI.A
17.03.16.11

Qihoo 360 Security
QVM06.1.Malware.Gen
1.0.0.1120

Rising Antivirus
Trojan.Generic-tS6cZa3tQGQ (cloud)
23.00.65.17314

Sophos
Generic PUA JM (PUA)
4.98

Vba32 AntiVirus
Backdoor.RMS
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
55972

Zillya! Antivirus
Backdoor.RMS.Win32.13
2.0.0.3205

File size:
3.9 MB (4,088,468 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
6/9/2012 4:19:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0xAC87

Entry point:
E8, E3, FE, FF, FF, 33, C0, 50, 50, 50, 50, E8, 9F, 30, 00, 00, C3, 56, 57, 8B, 7C, 24, 0C, 8B, F1, 8B, CF, 89, 3E, E8, 8F, AB, FF, FF, 89, 46, 08, 89, 56, 0C, 8B, 87, 24, 0C, 00, 00, 89, 46, 10, 5F, 8B, C6, 5E, C2, 04, 00, 8B, C1, 8B, 08, 8B, 50, 10, 3B, 91, 24, 0C, 00, 00, 75, 0D, 6A, 00, FF, 70, 0C, FF, 70, 08, E8, 0E, B1, FF, FF, C3, 56, 8B, F1, 8B, 06, 85, C0, 74, 07, 50, FF, 15, C4, 40, 41, 00, 83, 26, 00, 83, 66, 08, 00, 83, 66, 0C, 00, 5E, C3, 56, 8B, F1, 80, 7E, 04, 00, 75, 34, 68, F4, 44, 41, 00...
 
[+]

Code size:
73 KB (74,752 bytes)

Remove rabota.exe - Powered by Reason Core Security