zip.sfx

The file zip.sfx has been detected as malware by 22 anti-virus scanners.
MD5:
4b1ca50b8ccfdbbf6c706701f9945b9d

SHA-1:
36b98d51f60130edd6d7c2e9f27ef70245cec14e

SHA-256:
5b677dcf43bb4f9cc41a3994fdaa2168445fad7931656899e2372eb4ce4e9442

Scanner detections:
22 / 68

Status:
Malware

Analysis date:
4/16/2024 1:23:30 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.12284109
778

Agnitum Outpost
Trojan.CL.VB
7.1.1

Avira AntiVirus
TR/Rogue.1220096.5
7.11.195.232

avast!
Win32:Malware-gen
2014.9-141219

AVG
Generic11_c
2015.0.3256

Bitdefender
Trojan.Generic.12284109
1.0.20.1765

Emsisoft Anti-Malware
Trojan.Generic.12284109
8.14.12.19.12

ESET NOD32
Win32/TrojanClicker.VB.OGD
8.10883

Fortinet FortiGate
W32/Swisyn.FKRJ!tr
12/19/2014

F-Secure
Gen:Variant.Graftor.165487
11.2014-19-12_6

G Data
Trojan.Generic.12284109
14.12.24

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.8.5.0

Kaspersky
Trojan.Win32.Swisyn
14.0.0.2775

McAfee
Artemis!FBC9BAD58957
5600.6912

MicroWorld eScan
Trojan.Generic.12284109
15.0.0.1059

NANO AntiVirus
Trojan.Win32.Swisyn.djezes
0.28.6.64267

nProtect
Trojan.Generic.12284109
14.12.15.01

Reason Heuristics
Threat.Win.Reputation.IMP
14.12.19.0

Sophos
Mal/Generic-S
4.98

Trend Micro House Call
TROJ_GEN.R08JB01KT14
7.2.353

VIPRE Antivirus
Trojan.Win32.Generic
35766

Zillya! Antivirus
Trojan.Banker.Win32.84394
2.0.0.1980

File size:
153.5 KB (157,184 bytes)

Common path:
C:\users\{user}\downloads\o\zip.sfx

File PE Metadata
Compilation timestamp:
10/13/2014 10:19:25 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:qq1wcsrPRABewfD6+tZjj8hjsVBjHgtkVpofu5R0KCfNvMc6ykMXQ+a7lYyJ99zI:q7AEClV4kFUKCh0xYyL9zq8+Yv8/Ukb

Entry address:
0x1102C

Entry point:
E8, 0F, 65, 00, 00, E9, 78, FE, FF, FF, 55, 8B, EC, 83, EC, 04, 89, 7D, FC, 8B, 7D, 08, 8B, 4D, 0C, C1, E9, 07, 66, 0F, EF, C0, EB, 08, 8D, A4, 24, 00, 00, 00, 00, 90, 66, 0F, 7F, 07, 66, 0F, 7F, 47, 10, 66, 0F, 7F, 47, 20, 66, 0F, 7F, 47, 30, 66, 0F, 7F, 47, 40, 66, 0F, 7F, 47, 50, 66, 0F, 7F, 47, 60, 66, 0F, 7F, 47, 70, 8D, BF, 80, 00, 00, 00, 49, 75, D0, 8B, 7D, FC, 8B, E5, 5D, C3, 55, 8B, EC, 83, EC, 10, 89, 7D, FC, 8B, 45, 08, 99, 8B, F8, 33, FA, 2B, FA, 83, E7, 0F, 33, FA, 2B, FA, 85, FF, 75, 3C, 8B...
 
[+]

Entropy:
6.4402

Code size:
112 KB (114,688 bytes)

Remove zip.sfx - Powered by Reason Core Security