viewer.exe

The application viewer.exe has been detected as a potentially unwanted program by 21 anti-malware scanners.
MD5:
5a446e7f671af8acb05329755e679a3d

SHA-1:
018052e82627d5605bececfc0837cd6a27fda54c

SHA-256:
8ab251a7b1e5a9fc9dce4d3e53d13c87351042660ac13cb44b522678850cb0a5

Scanner detections:
21 / 68

Status:
Potentially unwanted

Analysis date:
4/23/2024 4:29:17 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Riskware.KeyLogger
7.1.1

Avira AntiVirus
SPR/Ardamax.AB
7.11.109.96

AVG
Ardamax
2015.0.3253

Baidu Antivirus
HackTool.Win32.Monitor
4.0.3.141222

Bitdefender
Trojan.GenericKDV.1089239
1.0.20.535

Comodo Security
UnclassifiedMalware
17154

Dr.Web
BackDoor.Xbot.1446
9.0.1.0356

Emsisoft Anti-Malware
Trojan.GenericKDV.1089239
8.14.04.17.01

ESET NOD32
Win32/KeyLogger.Ardamax.NBG (variant)
8.8583

Fortinet FortiGate
Riskware/Ardamax
4/17/2014

G Data
Trojan.GenericKDV.1089239
14.4.22

IKARUS anti.virus
not-a-virus:Monitor.Win32.Ardamax
t3scan.2.0.3.0

Kaspersky
not-a-virus:Monitor.Win32.Ardamax
14.0.0.2760

McAfee
Artemis!A87CC4FFFC74
5600.6909

NANO AntiVirus
Riskware.Win32.Ardamax.bvgghf
0.24.0.53571

Panda Antivirus
Suspicious file
14.12.22.01

Reason Heuristics
Threat.Win.Reputation.IMP
14.12.22.1

Rising Antivirus
Trojan.Win32.Generic.14AA1B9A
23.00.65.141220

Trend Micro House Call
TROJ_GEN.R00UH01FU13
7.2.107

Trend Micro
TROJ_GEN.R0CBC0OJO13
10.465.22

VIPRE Antivirus
Trojan.Win32.Generic
19688

File size:
791.5 KB (810,496 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\zzd\viewer.exe

File PE Metadata
Compilation timestamp:
6/16/2013 7:34:46 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:zQPRpKYGxBz11OaWxrdfe58PM2iXWIzEs:zQPKYqBZ9WZvM2iXXzEs

Entry address:
0x2A27A

Entry point:
E8, EE, 82, 00, 00, E9, 79, FE, FF, FF, 6A, 0C, 68, D8, A0, 48, 00, E8, C4, 14, 00, 00, 6A, 0E, E8, 7A, 1A, 00, 00, 59, 83, 65, FC, 00, 8B, 75, 08, 8B, 4E, 04, 85, C9, 74, 2F, A1, 14, 95, 49, 00, BA, 10, 95, 49, 00, 89, 45, E4, 85, C0, 74, 11, 39, 08, 75, 2C, 8B, 48, 04, 89, 4A, 04, 50, E8, EE, E4, FF, FF, 59, FF, 76, 04, E8, E5, E4, FF, FF, 59, 83, 66, 04, 00, C7, 45, FC, FE, FF, FF, FF, E8, 0A, 00, 00, 00, E8, B3, 14, 00, 00, C3, 8B, D0, EB, C5, 6A, 0E, E8, 45, 19, 00, 00, 59, C3, CC, CC, CC, CC, CC, CC...
 
[+]

Code size:
444.5 KB (455,168 bytes)

Remove viewer.exe - Powered by Reason Core Security