ultrasurf1304.exe

The executable ultrasurf1304.exe has been detected as malware by 34 anti-virus scanners.
MD5:
f6bc7bfa6f52825ad7b2c7be034212c2

SHA-1:
b49f33e9ce04c8510e02969e10b180ab3db270ca

SHA-256:
ad1db14b4850265aa4fb4a8b393f13bef1e0ce915dd6847f162fc4d81b4a8058

Scanner detections:
34 / 68

Status:
Malware

Analysis date:
5/2/2024 9:32:11 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.346251
-40

Agnitum Outpost
Trojan.Agent
7.1.1

Avira AntiVirus
TR/Dropper.MSIL.42701
8.3.2.2

Arcabit
Trojan.Kazy.D5488B
1.0.0.585

avast!
MSIL:GenMalicious-BHA [Trj]
2014.9-170315

AVG
Generic35
2018.0.2438

Baidu Antivirus
Hacktool.Win32.UltraReach
4.0.3.17315

Bitdefender
Gen:Variant.Kazy.346251
1.0.20.370

Comodo Security
UnclassifiedMalware
23480

Dr.Web
Trojan.DownLoader9.40411
9.0.1.074

Emsisoft Anti-Malware
Gen:Variant.Kazy.346251
8.17.03.15.08

ESET NOD32
MSIL/Injector.CET (variant)
11.12470

Fortinet FortiGate
W32/Agent.CIG!tr
3/15/2017

F-Secure
Gen:Variant.Kazy.346251
11.2017-15-03_4

G Data
Gen:Variant.Kazy.346251
17.3.25

IKARUS anti.virus
Trojan.MSIL.Agent
t3scan.1.9.5.0

K7 AntiVirus
Trojan
13.212.17655

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.-1314

Malwarebytes
Trojan.Agent.MSIL
v2017.03.15.08

McAfee
Artemis!F6BC7BFA6F52
5600.6094

Microsoft Security Essentials
Trojan:Win32/Peals.B!gfc
1.1.12205.0

MicroWorld eScan
Gen:Variant.Kazy.346251
18.0.0.222

NANO AntiVirus
Trojan.Win32.Agent.cuwzzm
0.30.26.3947

Panda Antivirus
Trj/CI.A
17.03.15.08

Qihoo 360 Security
Win32/Trojan.abf
1.0.0.1015

Quick Heal
Trojan.Generic.g3
3.17.14.00

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
23.00.65.17313

Sophos
Mal/Generic-S
4.98

Total Defense
Win32/Tnega.XAOU!suspicious
37.1.62.1

Trend Micro House Call
HKTL_USUR
7.2.74

Trend Micro
HKTL_USUR
10.465.15

Vba32 AntiVirus
Trojan.MSIL.Agent
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
44842

Zillya! Antivirus
Trojan.Injector.Win32.312640
2.0.0.2476

File size:
2.9 MB (3,088,397 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ultrasurf1304.exe

File PE Metadata
Compilation timestamp:
9/20/2007 7:34:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

Entry address:
0x1000

Entry point:
E8, F3, 2A, 00, 00, 50, E8, 3B, 33, 01, 00, 00, 00, 00, 00, 90, 55, 8B, EC, 53, 56, 57, 8B, 7D, 10, 8B, 5D, 0C, 8B, 75, 08, 8B, D3, FF, 75, 14, 68, E1, 50, 41, 00, 6A, 00, 6A, 00, 8B, C6, 8B, CF, E8, A2, 47, 00, 00, 81, EB, 10, 01, 00, 00, 74, 05, 4B, 74, 14, EB, 57, FF, 75, 14, 6A, 66, 56, E8, 9A, 35, 01, 00, B8, 01, 00, 00, 00, EB, 47, 66, 81, E7, FF, FF, 66, FF, CF, 74, 07, 66, FF, CF, 74, 23, EB, 30, 68, 80, 00, 00, 00, 68, A4, 69, 41, 00, 6A, 65, 56, E8, E0, 34, 01, 00, 6A, 01, 56, E8, BA, 34, 01, 00...
 
[+]

Entropy:
7.9924  (probably packed)

Code size:
80 KB (81,920 bytes)

Remove ultrasurf1304.exe - Powered by Reason Core Security