reviewer.exe

MD5:
8086fa859852979da8b20445c30d1f95

SHA-1:
d2145291d99a72385078821d024ce066d0e2e11a

SHA-256:
51e5bf49aada930077e0c7871fd3205ef86f0a4ea4b4e418e4f4b8fd489ffa25

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/10/2024 2:53:01 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Gendal.A.9218
7.11.30.172

Bkav FE
W32.HfsIemusi
1.3.0.4959

NANO AntiVirus
Trojan.Win32.ULPM.cvzxef
0.28.0.59492

SUPERAntiSpyware
Malware.Agent/Gen-FakeAlert
10392

File size:
17 KB (17,408 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\xenocode\sandbox\reviewer\1.7.0.9\2010.02.21t20.04\virtual\stubexe\8.0.1135\@appdir@\reviewer.exe

File PE Metadata
Compilation timestamp:
11/8/2012 5:39:15 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
384:lxEh3HoOO9KOpbA0EICjw7OLy0yUCSJl2Ia9t1LmvUxYowWzZFW9lObtMPPh36:c5IO++e7OLvyUzD2IaAvUxYowTPh

Entry address:
0x419F

Entry point:
55, 8B, EC, 83, E4, F8, 81, EC, F4, 0C, 00, 00, 53, 56, 57, E8, 82, FB, FF, FF, 8B, 35, 0C, 10, 40, 00, FF, D6, 83, E0, 11, BB, 10, 50, 40, 00, 3D, 11, 01, 00, 00, 0F, 84, 21, 04, 00, 00, FF, D6, A3, 0C, 50, 40, 00, E8, 4D, FC, FF, FF, 8B, C8, 2B, 0D, 0C, 50, 40, 00, 6A, 03, 33, D2, 8B, C1, 5E, F7, F6, F7, C1, 00, 80, FF, FF, 0F, 85, A9, 02, 00, 00, 33, C0, 33, FF, 89, BC, 24, E4, 08, 00, 00, 66, 89, 84, 24, D0, 04, 00, 00, 89, BC, 24, CC, 04, 00, 00, 66, 89, 84, 24, B8, 00, 00, 00, E8, 09, FC, FF, FF, 8B...
 
[+]

Entropy:
6.0507

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
15.5 KB (15,872 bytes)

Scan reviewer.exe - Powered by Reason Core Security