vdmallowed.exe

The executable vdmallowed.exe has been detected as malware by 39 anti-virus scanners.
Remove vdmallowed.exe - Powered by Reason Core Security
MD5:
9c5806f6b50a3cccb152df1e95b18629

SHA-1:
49ae812175df35812da42c2b2a9fc18b082e9c30

SHA-256:
bb76227a0797f8f87174a35ba2c1b551dc72f99eb1c7f16120158f595dd29901

Scanner detections:
39 / 68

Status:
Malware

Analysis date:
12/7/2016 1:33:38 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.Elzob.4910
969

Agnitum Outpost
Exploit.THAUS
7.1.1

AhnLab V3 Security
Trojan/Win32.THAUS
2013.12.16

Avira AntiVirus
TR/Dropper.Gen
7.11.119.214

avast!
Win32:Malware-gen
2014.9-140610

AVG
Dropper.Generic4
2015.0.3447

Baidu Antivirus
HackTool.Win32.KiTrap
4.0.3.14610

Bitdefender
Gen:Variant.Zusy.Elzob.4910
1.0.20.805

Bkav FE
W32.Clodacb.Trojan
1.3.0.4613

CMC Antivirus
Exploit.Win32.THAUS!O
1.1.0.977

Commtouch SDK
W32/Injector.A.gen!Eldorado
5.4.1.7

Comodo Security
UnclassifiedMalware
17445

ESET NOD32
Win32/HackTool.KiTrap (variant)
8.9175

Fortinet FortiGate
W32/ThausLoader.A!tr
6/10/2014

F-Prot
W32/Injector.A.gen
v6.4.7.1.166

F-Secure
Gen:Variant.Zusy.Elzob.4910
11.2014-10-06_3

G Data
Gen:Variant.Zusy.Elzob.4910
14.6.22

IKARUS anti.virus
Exploit.Win32.THAUS
t3scan.2.2.29

Jiangmin
Exploit.THAUS.aq
KV140610

K7 AntiVirus
Riskware
13.174.10509

K7 Gateway Antivirus
Exploit
13.174.10509

Kingsoft AntiVirus
Win32.Exploit.THAUS.di.(kcloud)
331020.49267

McAfee
Generic PUP.z!fx
5600.7103

McAfee Web Gateway
Generic PUP.z!fx
7.7103

Microsoft Security Essentials
HackTool:Win32/Kitrap.A
1.163.1557.0

MicroWorld eScan
Gen:Variant.Zusy.Elzob.4910
15.0.0.483

NANO AntiVirus
Exploit.Win32.THAUS.eaylg
0.28.0.56692

Norman
Suspicious_Gen.PPTK
11.20140610

nProtect
Trojan/W32.Small.36352.HC
13.12.15.01

Panda Antivirus
Trj/CI.A
14.06.10.01

Quick Heal
Exploit.THAUS.di (Not a Virus)
6.14.12.00

Sophos
Generic PUA EJ
4.96

SUPERAntiSpyware
Trojan.Agent/Gen-Elzob
10552

The Hacker
Trojan/Exploit.THAUS.di
6.8.0.6.161

Trend Micro House Call
TROJ_GEN.R0CBC0EFF13
7.2.161

Trend Micro
TROJ_GEN.R0CBC0EFF13
10.465.10

Vba32 AntiVirus
Exploit.THAUS
3.12.24.3

VIPRE Antivirus
Trojan.Win32.Generic
24386

ViRobot
Trojan.Win32.Generic.36352.D
2011.4.7.4223

Remove vdmallowed.exe - Powered by Reason Core Security
File size:
35.5 KB (36,352 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
8/15/2010 11:25:44 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
768:jWh/ZqndsJt17CYgE+Dj8IfGCXDbIz5VnNlrdVd8uYoUUC:jWh/ZNtuEojzh3IdNPd8loUR

Entry address:
0x184D0

Entry point:
60, BE, 00, 00, 41, 00, 8D, BE, 00, 10, FF, FF, 57, EB, 0B, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB...
 
[+]

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.24

Code size:
36 KB (36,864 bytes)

Remove vdmallowed.exe - Powered by Reason Core Security