themes.dll

The module themes.dll has been detected as a potentially unwanted program by 33 anti-malware scanners.
MD5:
a3857cbba6362637cd59d04792d4c61a

SHA-1:
7c7475364271876cda0994fb1512cc7fb1fcdfd9

Scanner detections:
33 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 9:41:20 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.11179864
778

Agnitum Outpost
Backdoor.Mevade
7.1.1

AhnLab V3 Security
Trojan/Win32.Sefnit
2014.09.13

Avira AntiVirus
TR/Sefnit.BM.30
7.11.171.224

avast!
Win32:Sefnit-IL [Trj]
2014.9-141219

AVG
Generic36
2015.0.3256

Baidu Antivirus
Trojan.Win32.Sefnit
4.0.3.141219

Bitdefender
Trojan.Generic.11179864
1.0.20.1765

Comodo Security
UnclassifiedMalware
19498

Dr.Web
BackDoor.Siggen.57251
9.0.1.0353

Emsisoft Anti-Malware
Trojan.Generic.11179864
8.14.12.19.01

ESET NOD32
Win32/Sefnit.DA (variant)
8.10410

Fortinet FortiGate
W32/Dx.D2K!tr
12/19/2014

F-Secure
Trojan.Generic.11179864
11.2014-19-12_6

G Data
Trojan.Generic.11179864
14.12.24

IKARUS anti.virus
Trojan.Win32.Sefnit
t3scan.1.7.8.0

K7 AntiVirus
Unwanted-Program
13.183.13358

Kaspersky
Backdoor.Win32.Mevade
14.0.0.2775

McAfee
Sefnit-FAW!871DB29BCC67
5600.6912

Microsoft Security Essentials
Trojan:Win32/Sefnit.BW
1.10401

MicroWorld eScan
Trojan.Generic.11179864
15.0.0.1059

NANO AntiVirus
Trojan.Win32.Sefnit.cwtxod
0.28.2.61942

Norman
Suspicious_Gen4.GDJXI
11.20141219

nProtect
Trojan.Generic.11179864
14.09.12.01

Panda Antivirus
Generic Malware
14.12.19.01

Qihoo 360 Security
Win32/Trojan.Dropper.c9f
1.0.0.1015

Reason Heuristics
Threat.Win.Reputation.IMP
14.12.19.0

Rising Antivirus
PE:Trojan.Win32.Generic.16A94F6A!380194666
23.00.65.141217

Sophos
Mal/Sefnit-E
4.98

Trend Micro House Call
TROJ_GEN.R028H01D214
7.2.104

Trend Micro
TROJ_GEN.R0CBC0DDA14
10.465.19

Vba32 AntiVirus
Backdoor.Mevade
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
33060

File size:
126.5 KB (129,536 bytes)

File type:
Dynamic link library (Win32 DLL)

Common path:
C:\Windows\System32\themes.dll

File PE Metadata
Compilation timestamp:
3/28/2014 8:52:19 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
1536:qVYkuAsxttScTBsRATFXhUm0LWfUUcLaGDdzKWhLX//kRQ0xnqkQwUgPN9qzO+h/:qVYk3sxXyAJXKm58tTHpKQcQiqzhXKy

Entry address:
0x7FBB

Entry point:
8B, FF, 55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, A8, 7E, 00, 00, FF, 75, 08, 8B, 4D, 10, 8B, 55, 0C, E8, EC, FE, FF, FF, 59, 5D, C2, 0C, 00, 8B, FF, 55, 8B, EC, 8B, 4D, 10, 85, C9, 74, 1B, 8B, 45, 0C, 0F, B7, D0, 8B, C2, C1, E2, 10, 57, 8B, 7D, 08, 0B, C2, D1, E9, F3, AB, 13, C9, 66, F3, AB, 5F, 8B, 45, 08, 5D, C3, 8B, FF, 55, 8B, EC, 56, 8B, 75, 14, 85, F6, 75, 04, 33, C0, EB, 64, 83, 7D, 08, 00, 75, 13, E8, 10, 09, 00, 00, 6A, 16, 5E, 89, 30, E8, B3, 04, 00, 00, 8B, C6, EB, 4B, 83, 7D, 10, 00, 74, 19, 39...
 
[+]

Entropy:
6.4285

Code size:
94 KB (96,256 bytes)

Remove themes.dll - Powered by Reason Core Security