578a.tmp

The file 578a.tmp has been detected as malware by 26 anti-virus scanners.
MD5:
6bfb6c0b84371b069da7ee5b50e051da

SHA-1:
00e1c6abac73ca4eb562488fc1fb8f86d261cbcf

SHA-256:
feeff6421b53703ba7a014c99b545ecc4d5a6ea33343a01642bc9c565045a8f0

Scanner detections:
26 / 68

Status:
Malware

Analysis date:
4/27/2024 9:25:57 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.14881671
-40

Avira AntiVirus
TR/Dropper.MSIL.172595
8.3.1.6

Arcabit
Trojan.Generic.DE31387
1.0.0.425

avast!
Win32:Malware-gen
2014.9-170315

AVG
MSIL8
2018.0.2438

Baidu Antivirus
Trojan.MSIL.Inject
4.0.3.17315

Bitdefender
Trojan.Generic.14881671
1.0.20.370

Dr.Web
Trojan.Packed.32051
9.0.1.074

Emsisoft Anti-Malware
Trojan.Generic.14881671
8.17.03.15.09

ESET NOD32
MSIL/Injector.KPS (variant)
11.12004

Fortinet FortiGate
MSIL/Injector.KPS!tr
3/15/2017

F-Secure
Trojan.Generic.14881671
11.2017-15-03_4

G Data
Trojan.Generic.14881671
17.3.25

IKARUS anti.virus
Trojan.MSIL.Injector
t3scan.1.9.5.0

K7 AntiVirus
Riskware
13.207.16700

Kaspersky
Trojan.MSIL.Inject
14.0.0.-1315

McAfee
RDN/Generic PWS.y
5600.6094

Microsoft Security Essentials
PWS:MSIL/Stimilini.M
1.1.11903.0

MicroWorld eScan
Trojan.Generic.14881671
18.0.0.222

NANO AntiVirus
Trojan.Win32.KPS.dugctb
0.30.24.2668

nProtect
Trojan.Generic.14881671
15.07.27.01

Panda Antivirus
Generic Suspicious
17.03.15.09

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

Sophos
Mal/Generic-S
4.98

Trend Micro
TROJ_GEN.R047C0DGQ15
10.465.15

VIPRE Antivirus
Trojan.Win32.Generic
42398

File size:
772 KB (790,528 bytes)

Common path:
C:\users\{user}\appdata\local\temp\578a.tmp

File PE Metadata
Compilation timestamp:
7/7/2015 5:36:26 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

Entry address:
0x8C31E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
556 KB (569,344 bytes)

Remove 578a.tmp - Powered by Reason Core Security