trojan.exe

The executable trojan.exe has been detected as malware by 16 anti-virus scanners.
MD5:
02cd7532b123a92cbeb6637e6a1254d3

SHA-1:
75e58c845ab2e7e90d5b03a9471158e509646f32

SHA-256:
5ccf901c9b9874641e40835804ee8e548b2c28098d091d11b2cc32e20a063eac

Scanner detections:
16 / 68

Status:
Malware

Analysis date:
4/24/2024 11:12:26 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Vobfus.180224.49
7.11.93.48

avast!
Win32:Spyware-gen [Spy]
2014.9-151126

Bitdefender
Gen:Variant.Zusy.23588
1.0.20.1650

Emsisoft Anti-Malware
Gen:Variant.Zusy.23588
8.15.11.26.08

ESET NOD32
MSIL/Bladabindi (variant)
9.8611

F-Secure
Gen:Variant.Zusy.23588
11.2015-26-11_5

G Data
Gen:Variant.Zusy.23588
15.11.22

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.1061

Malwarebytes
Trojan.Facebook
v2015.11.26.08

Microsoft Security Essentials
Backdoor:MSIL/Bladabindi.B
1.163.1557.0

MicroWorld eScan
Gen:Variant.Zusy.23588
16.0.0.990

Norman
Obfuscated.H2!genr
11.20151126

Panda Antivirus
Trj/CI.A
15.11.26.08

Sophos
Mal/Generic-S
4.91

SUPERAntiSpyware
Trojan.Agent/Gen-MSIL
9483

Total Defense
Win32/FakeFLDR_i
37.0.10498

File size:
174.5 KB (178,688 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\trojan.exe

File PE Metadata
Compilation timestamp:
6/12/2010 1:58:00 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3072:4RVEC2Oi8NXC797F8TBfFvj4bq57dZaLsp83d:4IC2F8NXC796TB9vj48PzpQd

Entry address:
0xFFEF

Entry point:
E8, 12, 5B, 00, 00, E9, A4, FE, FF, FF, 6A, 0C, 68, 38, 11, 42, 00, E8, 67, 0D, 00, 00, 6A, 0E, E8, 68, 02, 00, 00, 59, 83, 65, FC, 00, 8B, 75, 08, 8B, 4E, 04, 85, C9, 74, 2F, A1, F4, 37, 42, 00, BA, F0, 37, 42, 00, 89, 45, E4, 85, C0, 74, 11, 39, 08, 75, 2C, 8B, 48, 04, 89, 4A, 04, 50, E8, D9, E7, FF, FF, 59, FF, 76, 04, E8, D0, E7, FF, FF, 59, 83, 66, 04, 00, C7, 45, FC, FE, FF, FF, FF, E8, 0A, 00, 00, 00, E8, 56, 0D, 00, 00, C3, 8B, D0, EB, C5, 6A, 0E, E8, 33, 01, 00, 00, 59, C3, CC, CC, CC, CC, CC, CC...
 
[+]

Entropy:
6.5728

Code size:
102 KB (104,448 bytes)

Remove trojan.exe - Powered by Reason Core Security