zip.sfx

The file zip.sfx has been detected as malware by 22 anti-virus scanners.
MD5:
daf7fd3f0c5c463b63b4a625f36adb6b

SHA-1:
fed9b7a6e2f68d90a88c22a774803bba7abe02b7

SHA-256:
464b99952cd7843191e57b313a9ed73293e37ea1d8dac71cb7d0f8737516907a

Scanner detections:
22 / 68

Status:
Malware

Analysis date:
4/25/2024 10:49:16 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.12284109
778

Agnitum Outpost
Trojan.CL.VB
7.1.1

Avira AntiVirus
TR/Rogue.1220096.5
7.11.195.232

avast!
Win32:Malware-gen
2014.9-141219

AVG
Generic11_c
2015.0.3256

Bitdefender
Trojan.Generic.12284109
1.0.20.1765

Emsisoft Anti-Malware
Trojan.Generic.12284109
8.14.12.19.12

ESET NOD32
Win32/TrojanClicker.VB.OGD
8.10883

Fortinet FortiGate
W32/Swisyn.FKRJ!tr
12/19/2014

F-Secure
Gen:Variant.Graftor.165487
11.2014-19-12_6

G Data
Trojan.Generic.12284109
14.12.24

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.8.5.0

Kaspersky
Trojan.Win32.Swisyn
14.0.0.2775

McAfee
Artemis!FBC9BAD58957
5600.6912

MicroWorld eScan
Trojan.Generic.12284109
15.0.0.1059

NANO AntiVirus
Trojan.Win32.Swisyn.djezes
0.28.6.64267

nProtect
Trojan.Generic.12284109
14.12.15.01

Reason Heuristics
Threat.Win.Reputation.IMP
14.12.19.0

Sophos
Mal/Generic-S
4.98

Trend Micro House Call
TROJ_GEN.R08JB01KT14
7.2.353

VIPRE Antivirus
Trojan.Win32.Generic
35766

Zillya! Antivirus
Trojan.Banker.Win32.84394
2.0.0.1980

File size:
153.5 KB (157,184 bytes)

Common path:
C:\users\{user}\downloads\programs\wrar52b2.by.mr.!.hero\zip.sfx

File PE Metadata
Compilation timestamp:
10/20/2014 11:43:09 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:1q1wcsrPRABewfD6+tZjj8hjsVBjHgtkVpofu5R0KCfNvMc6ykMXQ+a7lYNJ99R7:B7AEClV4kFUKCh0xYNL9Rq8+Lv8/Ukb

Entry address:
0x1102C

Entry point:
E8, 0F, 65, 00, 00, E9, 78, FE, FF, FF, 55, 8B, EC, 83, EC, 04, 89, 7D, FC, 8B, 7D, 08, 8B, 4D, 0C, C1, E9, 07, 66, 0F, EF, C0, EB, 08, 8D, A4, 24, 00, 00, 00, 00, 90, 66, 0F, 7F, 07, 66, 0F, 7F, 47, 10, 66, 0F, 7F, 47, 20, 66, 0F, 7F, 47, 30, 66, 0F, 7F, 47, 40, 66, 0F, 7F, 47, 50, 66, 0F, 7F, 47, 60, 66, 0F, 7F, 47, 70, 8D, BF, 80, 00, 00, 00, 49, 75, D0, 8B, 7D, FC, 8B, E5, 5D, C3, 55, 8B, EC, 83, EC, 10, 89, 7D, FC, 8B, 45, 08, 99, 8B, F8, 33, FA, 2B, FA, 83, E7, 0F, 33, FA, 2B, FA, 85, FF, 75, 3C, 8B...
 
[+]

Code size:
112 KB (114,688 bytes)

Remove zip.sfx - Powered by Reason Core Security