saltanatmt2suta__hack.exe.rar

The file saltanatmt2suta__hack.exe.rar has been detected as malware by 27 anti-virus scanners. The file has been seen being downloaded from s3.dosya.tc.
MD5:
d0fe17bd96c90b3056b88750cf37e77a

SHA-1:
2cde9014a739582d563e8596dc61aa944ca033c3

SHA-256:
9615b9ed3f0ca378a0df5dd7914c3e6ee4b6c35829bbd61fd7f50c49b0e0a181

Scanner detections:
27 / 68

Status:
Malware

Analysis date:
4/25/2024 5:28:27 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Trojan.Heur.RX.gm0@XGRh0@iO
6582766

Avira AntiVirus
TR/Dropper.Gen
7.11.216.120

avast!
Win32:Malware-gen
2014.9-150312

AVG
PSW.Generic12
2016.0.3172

Bitdefender
Gen:Trojan.Heur.RX.gm0@XGRh0@iO
1.0.20.355

Clam AntiVirus
Win.Trojan.Agent-736470
0.98/21511

Comodo Security
TrojWare.Win32.Spy.Vkont.A
21388

Dr.Web
infected with Trojan.Siggen6.12706
9.0.1.05190

Emsisoft Anti-Malware
Gen:Trojan.Heur.RX.gm0@XGRh0@iO
9.0.0.4799

ESET NOD32
Win32/Spy.VB.NWB trojan
7.0.302.0

Fortinet FortiGate
W32/Spy.NWB!tr
3/12/2015

F-Prot
W32/VB-Backdoor-PWNF-based!Maxi (not disinfectable)
4.6.5.141

F-Secure
Gen:Trojan.Heur.RX.gm0@XGRh0@iO
11.2015-12-03_5

G Data
Gen:Trojan.Heur.RX.gm0@XGRh0@iO
15.3.25

IKARUS anti.virus
Trojan-Spy.Win32.Vkont
t3scan.1.8.6.0

K7 AntiVirus
Spyware
13.200.15249

Kaspersky
Trojan-Spy.Win32.Vkont
15.0.0.543

Malwarebytes
Backdoor.Agent.FF
v2015.03.12.07

McAfee
Trojan.GenericATG-FSK!541BCCECBF5B
16.8.708.2

Microsoft Security Essentials
Threat.Undefined
1.193.2090.0

MicroWorld eScan
Gen:Trojan.Heur.RX.gm0@XGRh0@iO
16.0.0.213

NANO AntiVirus
Trojan.Win32.Vkont.djrusw
0.30.0.296

Norman
Gen:Trojan.Heur.RX.gm0@XGRh0@iO
03.12.2014 13:20:04

Panda Antivirus
Trj/Genetic.gen
15.03.12.07

Sophos
Virus 'Mal/Behav-035'
5.12

Vba32 AntiVirus
Malware-Cryptor.VB.gen.1
3.12.26.3

Zillya! Antivirus
Trojan.VKont.Win32.1692
2.0.0.2097

File size:
28.8 KB (29,485 bytes)

Common path:
C:\users\{user}\downloads\saltanatmt2suta__hack.exe.rar

The file saltanatmt2suta__hack.exe.rar has been seen being distributed by the following URL.

Remove saltanatmt2suta__hack.exe.rar - Powered by Reason Core Security