stuprt.exe

Johnson

Basis tank - www.Johnson.com

The executable stuprt.exe, “Raw swing accident consonant loss” has been detected as malware by 34 anti-virus scanners. According to AVG, this software downloads additional adware offers during setup.
Publisher:
Basis tank - www.Johnson.com

Product:
Johnson

Description:
Raw swing accident consonant loss

Version:
2.0.0.5

MD5:
48f810de6cf3a2111ac35a20b61721e6

SHA-1:
b5073bc7c0e77683914239ae92b71a328ca6953c

SHA-256:
0625f45792f555402c2391415ff34a328c52cdbe9e09f480a87ca0e1d8ce17f8

Scanner detections:
34 / 68

Status:
Malware

Analysis date:
4/26/2024 1:28:27 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.1989835
674

AhnLab V3 Security
Trojan/Win32.Ropest
2015.02.03

Avira AntiVirus
TR/Crypt.Xpack.105487
7.11.206.148

avast!
Win32:Injector-CGZ [Trj]
2014.9-150401

AVG
Downloader.Small
2016.0.3152

Baidu Antivirus
Trojan.Win32.Downloader
4.0.3.1541

Bitdefender
Trojan.GenericKD.1989835
1.0.20.455

Bkav FE
W32.ATVC_SuftidcopLTF.Trojan
1.3.0.6379

Dr.Web
Trojan.Encoder.817
9.0.1.091

Emsisoft Anti-Malware
Trojan.GenericKD.1989835
8.15.04.01.02

ESET NOD32
Win32/TrojanDownloader.Wauchos.AF
9.11113

Fortinet FortiGate
W32/Agent.AF!tr.dldr
4/1/2015

F-Secure
Trojan.GenericKD.1989835
11.2015-01-04_4

G Data
Trojan.GenericKD.1989835
15.4.25

IKARUS anti.virus
Trojan-Downloader.Win32.Agent
t3scan.1.8.6.0

K7 AntiVirus
Trojan
13.193.14838

Kaspersky
Trojan-Downloader.Win32.Agent
14.0.0.2257

Malwarebytes
Trojan.Agent.DED
v2015.04.01.02

McAfee
Packed-CL!48F810DE6CF3
5600.6808

Microsoft Security Essentials
Trojan:Win32/Yakad.A!gfc
1.1.11302.0

MicroWorld eScan
Trojan.GenericKD.1989835
16.0.0.273

NANO AntiVirus
Trojan.Win32.Agent.djiezu
0.30.0.65070

Norman
Troj_Generic.XKQBL
11.20150401

nProtect
Trojan.GenericKD.1989835
15.01.30.01

Panda Antivirus
Trj/Chgt.N
15.04.01.02

Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen
1.0.0.1015

Quick Heal
TrojanRansom.Crowti.A6
4.15.14.00

Rising Antivirus
PE:Trojan.Win32.Generic.17C70841!398919745
23.00.65.15330

Sophos
Mal/Wonton-Z
4.98

Trend Micro House Call
TROJ_SPNV.01KR14
7.2.91

Trend Micro
TROJ_SPNV.01KR14
10.465.01

Vba32 AntiVirus
TrojanDownloader.Agent
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
37208

Zillya! Antivirus
Downloader.Agent.Win32.230086
2.0.0.2052

File size:
96.5 KB (98,816 bytes)

Product version:
1.0

Copyright:
Copyright (C) Johnson 2004-2013

File type:
Executable application (Win32 EXE)

Language:
Árabe (Arabia Saudí)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\stuprt.exe

File PE Metadata
Compilation timestamp:
11/22/2014 3:14:50 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:44WfXzfgZRmdvvEHwtSDzWfGFrHhIxLLHwyWOghw0Q9/45rKZD:gfORc6WuFqxLLHwyDgq5erKZD

Entry address:
0x25A3

Entry point:
E8, C4, 61, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 53, 56, 8B, 75, 08, 8B, 86, BC, 00, 00, 00, 33, DB, 57, 3B, C3, 74, 6F, 3D, E8, 2D, 41, 00, 74, 68, 8B, 86, B0, 00, 00, 00, 3B, C3, 74, 5E, 39, 18, 75, 5A, 8B, 86, B8, 00, 00, 00, 3B, C3, 74, 17, 39, 18, 75, 13, 50, E8, A3, 64, 00, 00, FF, B6, BC, 00, 00, 00, E8, E4, 63, 00, 00, 59, 59, 8B, 86, B4, 00, 00, 00, 3B, C3, 74, 17, 39, 18, 75, 13, 50, E8, 82, 64, 00, 00, FF, B6, BC, 00, 00, 00, E8, 7E, 63, 00, 00, 59, 59, FF, B6, B0, 00, 00, 00, E8, 6A...
 
[+]

Entropy:
6.9813

Code size:
53 KB (54,272 bytes)

Remove stuprt.exe - Powered by Reason Core Security