vipvideo.exe

X2Net DEMO Certificate Only

The executable vipvideo.exe has been detected as malware by 31 anti-virus scanners.
Publisher:
X2Net DEMO Certificate Only  (signed and verified)

MD5:
cc2f480b1b9ca5033955b9a99b349e45

SHA-1:
87a6f2bba1c0f6a4cd4885859a8fade5c01c691a

SHA-256:
94aea7f8b6a6b84948b9eff7a8e09ca38e9e1a43d0ebffdfd406ecb0f5d35d00

Scanner detections:
31 / 68

Status:
Malware

Analysis date:
4/26/2024 5:28:57 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.1965
355

Agnitum Outpost
Trojan.DL.Vividi
7.1.1

AhnLab V3 Security
Win-Trojan/Downloader.648024
2014.10.11

Avira AntiVirus
TR/Dldr.Vividi.A.1
7.11.177.146

avast!
Win32:Malware-gen
2014.9-160215

Baidu Antivirus
Trojan.Win32.Generic
4.0.3.16215

Bitdefender
Gen:Variant.Zusy.1965
1.0.20.230

Bkav FE
W32.Clod12b.Trojan
1.3.0.4959

Comodo Security
UnclassifiedMalware
19759

Dr.Web
Trojan.Packed.193
9.0.1.046

Emsisoft Anti-Malware
Gen:Variant.Zusy.1965
8.16.02.15.06

ESET NOD32
Win32/Induc
10.10542

Fortinet FortiGate
W32/Downloader_a.B2N!tr
2/15/2016

F-Prot
W32/Threat-HLLIE-based
v6.4.7.1.166

F-Secure
Gen:Variant.Zusy.1965
11.2016-15-02_2

G Data
Gen:Variant.Zusy.1965
16.2.24

IKARUS anti.virus
Virus.Win32.Induc
t3scan.1.7.8.0

Kaspersky
Virus.Win32.Induc
14.0.0.659

Malwarebytes
Trojan.Clicker
v2016.02.15.06

McAfee
Artemis!CC2F480B1B9C
5600.6489

Microsoft Security Essentials
Virus:Win32/Induc.A
1.11005

MicroWorld eScan
Gen:Variant.Zusy.1965
17.0.0.138

NANO AntiVirus
Trojan.Win32.Vividi.iilhr
0.28.2.62483

Norman
Troj_Generic.NNVI
11.20160215

Qihoo 360 Security
HEUR/Malware.QVM18.Gen
1.0.0.1015

Rising Antivirus
PE:Trojan.Win32.Generic.12B2974E!313694030
23.00.65.16213

Sophos
Mal/Generic-L
4.98

Trend Micro House Call
TROJ_SPNR.30G212
7.2.46

Trend Micro
TROJ_SPNR.30G212
10.465.15

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
33794

File size:
632.8 KB (648,024 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\vipvideo.exe

Digital Signature
Authority:
X2Net TESTING ROOT ONLY

Valid from:
10/19/2006 9:43:09 AM

Valid to:
12/31/2039 6:59:59 PM

Subject:
CN=X2Net DEMO Certificate Only

Issuer:
CN=X2Net TESTING ROOT ONLY

Serial number:
61E959FDE00323BA432CEDA6EA0DD16B

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:2Dc45I8jWtJ8/y2itLy+8AMaMaFk1+r3pCGXf32J9MUUO+vNORz0QMVVS:Wc4ktAy2iXZMa7Fk1Fa32JBL+KGVS

Entry address:
0x3C4D

Entry point:
68, 00, 10, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 83, C4, 08, E9, C5, B5, 35, 00, 44, 05, BE, 83, 00, 6C, C2, 8F, 96, 3A, 82, D2, 0D, A8, 48, 7C, 2A, 0B, 8F, 68, 62, 3A, E5, 98, AE, 8B, 40, DA, C3, 33, B1, 9C, 7D, 65, CF, 3F, 07, 6A, C6, 38, 8C, C7, 9F, B2, E4, 13, 69, 6E, 4E, E1, 0C, 3C, 20, 62, 1D, 66, C8, 67, FA, ED, 4F, 0C, B0, 25, 35, D9, CE, A3, B9, 77, F7, 66, 7D, AE, AE, DE, 9D, 60, 33, 56, 8C, 28, 6A, 17, 4F, A1, BE, 25, E4, 92, FE, 6B, DE, 07, 9C, A3, 1A, A8...
 
[+]

Entropy:
7.9322

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
36 KB (36,864 bytes)

Remove vipvideo.exe - Powered by Reason Core Security