server.exe

The executable server.exe has been detected as malware by 33 anti-virus scanners.
MD5:
8113d15f2592ff62d501ecefebf39bb4

SHA-1:
7634824fa830339aff585f5d202379d52f9ab72d

SHA-256:
9451563b1222a7d2f55724de68d0e353f5640a8b782e7023aad3805412db1a9e

Scanner detections:
33 / 68

Status:
Malware

Analysis date:
4/19/2024 2:47:32 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKDZ.24293
925

AhnLab V3 Security
Backdoor/Win32.Bladabindi
2014.07.25

Avira AntiVirus
TR/Dropper.Gen7
7.11.163.240

avast!
MSIL:GenMalicious-V [Trj]
140617-1

AVG
Trojan horse PSW.ILUSpy
2014.0.3986

Bitdefender
Trojan.GenericKDZ.24293
1.0.20.1030

Bkav FE
W32.AtedypoLSTM.Trojan
1.3.0.4959

Comodo Security
Backdoor.MSIL.Bladabindi.A
18967

Dr.Web
BackDoor.Bladabindi.1702
9.0.1.05190

Emsisoft Anti-Malware
Trojan.GenericKDZ.24293
8.14.07.25.09

ESET NOD32
MSIL/Bladabindi.BH trojan
7.0.302.0

Fortinet FortiGate
MSIL/Bladabindi.Q!tr
7/25/2014

F-Prot
W32/MSIL_Bladabindi.G.gen
v6.4.7.1.166

F-Secure
Trojan.GenericKDZ.24293
11.2014-25-07_6

G Data
Trojan.GenericKDZ.24293
14.7.24

IKARUS anti.virus
Backdoor.MSIL
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.181.12846

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.3508

Malwarebytes
Trojan.MSIL
v2014.07.25.09

McAfee
BackDoor-FBIB!8113D15F2592
5600.7059

Microsoft Security Essentials
Threat.Undefined
1.179.972.0

MicroWorld eScan
Trojan.GenericKDZ.24293
15.0.0.618

NANO AntiVirus
Trojan.Win32.DownLoader11.cxfbrl
0.28.2.60990

Norman
Bladabindi.JQ
11.20140725

nProtect
Trojan/W32.Agent.24064.UJ
14.07.25.01

Qihoo 360 Security
Malware.QVM03.Gen
1.0.0.1015

Sophos
Troj/DotNet-P
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Bladabindi
10462

Total Defense
Win32/DotNetDl.A!generic
37.0.11079

Trend Micro House Call
BKDR_BLBINDI.SMN
7.2.206

Trend Micro
BKDR_BLBINDI.SMN
10.465.25

Vba32 AntiVirus
Trojan.MSIL.Disfa
3.12.26.3

VIPRE Antivirus
Threat.4799966
31208

File size:
23.5 KB (24,064 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
7/24/2014 12:46:36 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:7MK6b2GZsx/Yr1+liORH1kcPFQ6Lg9gSOYRr9mRvR6JZlbw8hqIusZzZfgQ:Ub9glF51LRpcnuBQ

Entry address:
0x748E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
21.5 KB (22,016 bytes)

Remove server.exe - Powered by Reason Core Security