6.exe

مستكشف Windows

The executable 6.exe has been detected as malware by 13 anti-virus scanners.
Product:
مستكشف Windows

Version:
1.0.0.0

MD5:
504524846b24b88543b89df9b790d5ac

SHA-1:
041a2499569f91245895335e0d47122c55d0c953

SHA-256:
f0d5a8d6b09924893c79b7a7883c67c45c82723783815b898eae420a717e4157

Scanner detections:
13 / 68

Status:
Malware

Analysis date:
4/28/2024 4:14:46 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.MSIL.Lynx.41
-40

Arcabit
Trojan.MSIL.Lynx.41
1.0.0.688

Bitdefender
Gen:Variant.MSIL.Lynx.41
1.0.20.375

Dr.Web
Trojan.DownLoader18.54818
9.0.1.075

Emsisoft Anti-Malware
Gen:Variant.MSIL.Lynx.41
8.17.03.16.12

ESET NOD32
MSIL/Kryptik.EMQ (variant)
11.13511

Fortinet FortiGate
MSIL/Kryptik.EOJ!tr
3/16/2017

F-Prot
W32/S-1d9c520b
v6.4.7.1.166

F-Secure
Gen:Variant.MSIL.Lynx.41
11.2017-16-03_5

G Data
Gen:Variant.MSIL.Lynx.41
17.3.25

IKARUS anti.virus
Trojan.MSIL.Crypt
t3scan.2.0.9.0

MicroWorld eScan
Gen:Variant.MSIL.Lynx.41
18.0.0.225

Qihoo 360 Security
QVM03.0.Malware.Gen
1.0.0.1120

File size:
124.5 KB (127,488 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
مستكشف Windows.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\roaming\6.exe

File PE Metadata
Compilation timestamp:
5/19/2016 5:32:13 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

Entry address:
0x1FCEE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.3013

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
119.5 KB (122,368 bytes)

Remove 6.exe - Powered by Reason Core Security