Virus.exe

GiGa

{B1A3E942-0C97-49A3-8C63-10C008633F19}

The executable Virus.exe has been detected as malware by 5 anti-virus scanners.
Publisher:
GiGa lnc  (signed by {B1A3E942-0C97-49A3-8C63-10C008633F19})

Product:
GiGa

Description:
GiGa Assembly

Version:
1.0.0.0

MD5:
9bae0b18c0860969cdf1be426082b584

SHA-1:
65286a6abf7b30ffd7af2f084abdd30094210fb3

SHA-256:
280d148ad1102ed3e7a08506207c64d0992976d759fe9c14c8758a2f3a5ca274

Scanner detections:
5 / 68

Status:
Malware

Analysis date:
4/25/2024 3:02:29 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Backdoor/Win32.Agent
2014.08.22

AVG
Trojan horse MSIL3.AVGO
2014.0.4007

Dr.Web
BackDoor.Paper.28
9.0.1.05190

ESET NOD32
MSIL/Injector.CSO trojan
7.0.302.0

Kaspersky
Trojan-FakeAV.Win32.Windef
15.0.0.494

File size:
589.6 KB (603,712 bytes)

Product version:
1.0.0.0

Copyright:
© 2011 GiGa lnc

Trademarks:
© 2011 GiGa lnc

Original file name:
Virus.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Digital Signature
Authority:
{B1A3E942-0C97-49A3-8C63-10C008633F19}

Valid from:
11/26/2013 11:15:56 PM

Valid to:
11/27/2014 5:15:56 AM

Subject:
CN={B1A3E942-0C97-49A3-8C63-10C008633F19}

Issuer:
CN={B1A3E942-0C97-49A3-8C63-10C008633F19}

Serial number:
170631A2653871824A2B0B818369A5C6

File PE Metadata
Compilation timestamp:
2/7/2014 8:42:38 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:H4GC54TCAqcMph+hdeeeeeeezeeeeeeezeeeeeeezeeeeeeezeeeeeeezeeeeeeE:vuHcW+3eeeeeeezeeeeeeezeeeeeeezw

Entry address:
0x39E6E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
224 KB (229,376 bytes)

Remove Virus.exe - Powered by Reason Core Security