e7a6bb11025cd096d8363320d1de94d0.pe

The file e7a6bb11025cd096d8363320d1de94d0.pe has been detected as malware by 31 anti-virus scanners.
MD5:
e7a6bb11025cd096d8363320d1de94d0

SHA-1:
d78955fb61c3015b6be6ae9e24c36df4627b7060

SHA-256:
a990692a07c678fc37db1710e4b3e4a48d32432c2c74e0ecd895b14364878722

Scanner detections:
31 / 68

Status:
Malware

Analysis date:
4/26/2024 3:39:43 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.TinbaKD.2262728
658

Agnitum Outpost
Trojan.PWS.Tinba
7.1.1

Avira AntiVirus
TR/Agent.125440.88
3.6.1.96

avast!
Win32:Malware-gen
2014.9-150418

AVG
SHeur4
2016.0.3136

Baidu Antivirus
Trojan.Win32.Banker
4.0.3.15418

Bitdefender
Trojan.TinbaKD.2262728
1.0.20.540

Comodo Security
UnclassifiedMalware
21759

Dr.Web
Trojan.PWS.Tinba
9.0.1.0108

Emsisoft Anti-Malware
Trojan.TinbaKD.2262728
8.15.04.18.09

ESET NOD32
Win32/Kryptik.DDRA (variant)
9.11468

Fortinet FortiGate
W32/Kryptik.DDRA!tr
4/18/2015

F-Secure
Trojan.TinbaKD.2262728
11.2015-18-04_7

G Data
Trojan.TinbaKD.2262728
15.4.25

IKARUS anti.virus
Trojan.Win32.Crypt
t3scan.1.8.9.0

K7 AntiVirus
Trojan
13.202.15581

Kaspersky
Trojan-Banker.Win32.Tinba
14.0.0.2173

Malwarebytes
Trojan.Tinba.ED
v2015.04.18.09

McAfee
RDN/Generic.bfr!ig
5600.6792

MicroWorld eScan
Trojan.TinbaKD.2262728
16.0.0.324

NANO AntiVirus
Trojan.Win32.Tinba.dqdmdk
0.30.16.1110

Norman
Troj_Generic.ZVVIQ
11.20150418

nProtect
Trojan.TinbaKD.2262728
15.04.13.01

Panda Antivirus
Trj/CI.A
15.04.18.09

Qihoo 360 Security
HEUR/QVM20.1.Malware.Gen
1.0.0.1015

Quick Heal
Win32.Packed.Katusha.n.3
4.15.14.00

Sophos
Troj/HkMain-CT
4.98

Trend Micro House Call
TROJ_GEN.R021C0DD615
7.2.108

Trend Micro
TROJ_GEN.R021C0DD615
10.465.18

VIPRE Antivirus
Trojan.Win32.Generic
39324

Zillya! Antivirus
Trojan.Tinba.Win32.1020
2.0.0.2138

File size:
122.5 KB (125,440 bytes)

Common path:
C:\users\{user}\downloads\e7a6bb11025cd096d8363320d1de94d0.pe

File PE Metadata
Compilation timestamp:
7/2/2005 8:54:16 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:PgvQ1uj2BzxevjXJqmtVy9YHxBJNpqnT1QZOzSG3PBh:PgYxRMjXRtU9YH3o5NLB

Entry address:
0x17146

Entry point:
55, 8B, EC, 90, 90, 68, 78, 84, 41, 00, 68, 40, 71, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, A0, 81, 41, 00, 59, 83, 0D, C8, 91, 42, 00, FF, 83, 0D, CC, 91, 42, 00, FF, FF, 15, 9C, 81, 41, 00, 8B, 0D, C4, 91, 42, 00, 89, 08, FF, 15, 98, 81, 41, 00, 8B, 0D, C0, 91, 42, 00, 89, 08, A1, 94, 81, 41, 00, 8B, 00, A3, D0, 91, 42, 00, E8, 10, 01, 00, 00, 39, 1D, B0, FF, 41, 00, 75, 0C, 68, C2, 72, 41, 00, FF, 15, 90, 81...
 
[+]

Entropy:
6.5198

Developed / compiled with:
Microsoft Visual C++

Code size:
89.5 KB (91,648 bytes)

Remove e7a6bb11025cd096d8363320d1de94d0.pe - Powered by Reason Core Security