ucbrabs.exe

The executable ucbrabs.exe has been detected as malware by 8 anti-virus scanners.
MD5:
66efb44eb85fc33f8bb99edabc7346c2

SHA-1:
b3a5137166293049504ecdc2520567cf9c812573

SHA-256:
db28be3d0bf52c8918873482dbac57b8971152e7090e01fdc280e53166b91e29

Scanner detections:
8 / 68

Status:
Malware

Analysis date:
4/25/2024 10:37:14 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Crypt.ZPACK.Gen
8.3.3.2

AVG
Win32/Heur
2017.0.2832

Bkav FE
HW32.Packed
1.3.0.7400

ESET NOD32
Win32/Kryptik.EAHW (variant)
10.13032

Panda Antivirus
Generic Suspicious
16.02.15.07

Qihoo 360 Security
HEUR/QVM20.1.Malware.Gen
1.0.0.1120

Rising Antivirus
PE:Malware.XPACK/RDM!5.1 [F]
23.00.65.16213

Sophos
Mal/MyTonel-B
4.98

File size:
1.4 MB (1,434,624 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\ucbrabs.exe

File PE Metadata
Compilation timestamp:
4/12/2012 9:47:49 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:c/tkSFXz4pbL2Lt4L+IDhNOQEzri763sZgjInr+FfpO67M1dUZeZvl:c/5FcpbLm4LDnNX76w5EjY1OcRl

Entry address:
0x1F10

Entry point:
83, EC, 04, 89, 2C, 24, 89, E5, 83, EC, 40, 66, 81, FC, 02, FD, 0F, 82, C1, 01, 00, 00, E8, 00, 00, 00, 00, 8D, 3D, 03, C0, 00, 01, 47, 57, B8, D0, FE, 15, 01, FF, 10, 83, F8, 00, 74, 01, C3, 66, 81, FD, 00, FC, 72, F8, 8B, 3D, 70, C1, 00, 01, 8D, 0D, 03, C0, 00, 01, 41, 51, C6, 01, 79, B8, F0, FE, 15, 01, FF, 10, 85, C0, 0F, 85, 80, 01, 00, 00, 68, 46, 20, 01, 01, 6A, 0F, 68, 37, 20, 01, 01, 68, 29, 20, 01, 01, 8D, 05, E8, FE, 15, 01, FF, 10, 83, F8, 00, 0F, 85, 5E, 01, 00, 00, 68, 46, 20, 01, 01, 6A, 0F...
 
[+]

Code size:
40.5 KB (41,472 bytes)

Remove ucbrabs.exe - Powered by Reason Core Security