task64.exe

DeleteCache

ABDULKADIR SAHIN

The application task64.exe by ABDULKADIR SAHIN has been detected as adware by 26 anti-malware scanners.
Publisher:
ABDULKADIR SAHIN  (signed and verified)

Product:
DeleteCache

Version:
1.0.0.0

MD5:
4957b5d1363cc8f422e4611a3f21a0ad

SHA-1:
25622c3a85207e840eedbea177433b942d46410b

SHA-256:
700914ad120b7c9627a862bed5b3ae96784ab1ce368b619dbfe19764cf3c5b0e

Scanner detections:
26 / 68

Status:
Adware

Analysis date:
4/18/2024 11:49:02 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.1482876
439

Agnitum Outpost
Trojan.Agent
7.1.1

Avira AntiVirus
TR/Rogue.1482876
7.11.213.138

AVG
MSIL
2016.0.2917

Bitdefender
Trojan.GenericKD.1482876
1.0.20.1630

Comodo Security
UnclassifiedMalware
21297

Emsisoft Anti-Malware
Trojan.GenericKD.1482876
8.15.11.22.04

ESET NOD32
MSIL/Agent.OFA
9.11271

Fortinet FortiGate
MSIL/Agent.OFA!tr
11/22/2015

F-Secure
Trojan.GenericKD.1482876
11.2015-22-11_1

G Data
Trojan.GenericKD.1482876
15.11.25

IKARUS anti.virus
Trojan.Msil
t3scan.1.8.6.0

K7 AntiVirus
Trojan
13.200.15159

Kaspersky
Trojan.MSIL.Agent
14.0.0.1082

Malwarebytes
Malware.Tool
v2015.11.22.04

McAfee
Artemis!4957B5D1363C
5600.6573

MicroWorld eScan
Trojan.GenericKD.1482876
16.0.0.978

nProtect
Trojan.GenericKD.1482876
15.03.04.01

Panda Antivirus
Generic Malware
15.11.22.04

Qihoo 360 Security
Win32/Trojan.fdc
1.0.0.1015

Quick Heal
Trojan.MSI.r4
11.15.14.00

Reason Heuristics
PUP.ABDULKADIRSAHIN (M)
15.11.22.16

Sophos
Mal/Generic-S
4.98

Vba32 AntiVirus
Trojan.MSIL.Agent
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
38130

Zillya! Antivirus
Trojan.Agent.Win32.448411
2.0.0.2088

File size:
43.3 KB (44,368 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013

Original file name:
DeleteCache.exe

File type:
Executable application (Win32 EXE)

Language:
Turkish (Turkey)

Common path:
C:\ProgramData\task64.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/18/2013 2:00:00 AM

Valid to:
3/20/2014 1:59:59 AM

Subject:
CN=ABDULKADIR SAHIN, OU=Individual Developer, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=No Organization Affiliation, L=ANKARA, S=KECIOREN, C=TR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
516CAE126302D8B129C8550A077CDF6F

File PE Metadata
Compilation timestamp:
12/29/2013 5:42:33 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:Xebws0jQVmKvSIdU9wpORzYUo2TJQ9Ybc:J3jQVRdUeqUYeUc

Entry address:
0xA66E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
34 KB (34,816 bytes)

Remove task64.exe - Powered by Reason Core Security