video.exe

The application video.exe has been detected as a potentially unwanted program by 25 anti-malware scanners.
MD5:
4357a5868743eecfe2e5b41432eb8093

SHA-1:
fa316fa6e801878535cd17574e65a871a67318e5

SHA-256:
cec903144fbceef10a58f9df94d57803b76f7b452f44b5d85026650a9d8ac31f

Scanner detections:
25 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 1:03:52 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-Trojan/Fakeav33.Gen
2011.05.11

Avira AntiVirus
TR/Dldr.Agent.ACF.4
7.11.7.214

avast!
Win32:Downloader-GTB
2014.9-140901

AVG
Cryptic
2015.0.3364

Bitdefender
Trojan.Generic.KD.198254
1.0.20.1220

Comodo Security
Heur.Suspicious
8652

Dr.Web
Trojan.Packed.21552
9.0.1.0244

Emsisoft Anti-Malware
Trojan.Win32.Bredolab!IK
8.14.09.01.09

ESET NOD32
Win32/Kryptik.MXJ (variant)
8.6110

Fortinet FortiGate
W32/PKeliAV.fam@mm
9/1/2014

F-Prot
W32/FakeAlert.NO.gen
v6.4.6.2.117

F-Secure
Trojan.Generic.KD.198254
11.2014-01-09_2

G Data
Trojan.Generic.KD.198254
14.9.22

IKARUS anti.virus
Trojan.Win32.Bredolab
t3scan.1.1.103.0

K7 AntiVirus
Adware
13.103.4614

Kaspersky
not-a-virus:FraudTool.Win32.SMWnd
14.0.0.3315

McAfee
Generic FakeAlert.ama
5600.7020

Microsoft Security Essentials
Rogue:Win32/Winwebsec
1.163.1557.0

Norman
W32/Crypt.AVFD
11.20140901

Panda Antivirus
Generic Trojan
14.09.01.09

Sophos
Mal/FakeAV-IH
4.65

SUPERAntiSpyware
Trojan.Agent/Gen-FakeAV
10385

Trend Micro House Call
TROJ_KELIHOS.SMU
7.2.244

Trend Micro
TROJ_KELIHOS.SMU
10.465.01

VIPRE Antivirus
FraudTool.Win32.MSRemovalTool.ek!b
9245

File size:
358.5 KB (367,104 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\video.exe

File PE Metadata
Compilation timestamp:
1/12/2011 5:59:58 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:MK11GLnGK090QKtYo6e9yydWM/EMMmYLZlFSUNbji9Yv30F:MK1mGK090rq6y6OnFNpAuEF

Entry address:
0x57044

Entry point:
60, 68, 00, 90, 45, 00, 5E, 6A, 02, 6A, 00, 56, E8, 1B, 01, 00, 00, 85, C0, 74, 01, C3, AC, 6A, 00, 6A, 00, 56, E8, 0B, 01, 00, 00, 83, F8, 03, 0F, 8F, 36, 04, 00, 00, 61, C3, 00, 00, F6, 37, FF, 25, A8, 80, 45, 00, 00, 00, C8, 5C, 00, 00, 8D, 1D, 64, 90, 45, 00, 83, 43, 14, 79, 53, 51, FF, B3, D4, 01, 00, 00, FF, B3, EC, 00, 00, 00, E8, 27, 03, 00, 00, 5B, BF, 00, 00, 00, 00, 57, E8, 9B, 05, 00, 00, B9, 0B, 00, 00, 00, 51, E8, A0, 04, 00, 00, 83, C4, 5C, 5D, C2, 08, 00, 00, FF, 25, 30, 80, 45, 00, 00, 00...
 
[+]

Entropy:
7.9764  (probably packed)

Code size:
3 KB (3,072 bytes)

Remove video.exe - Powered by Reason Core Security