crypted.exe

The executable crypted.exe has been detected as malware by 33 anti-virus scanners.
MD5:
faf670cfb84ee398ad5ecd7c99d2a8c4

SHA-1:
2205b45196e5e69f84a487968f975f0a4ab6abfa

SHA-256:
c8356d0ae7a8cd346e121c26c4f98d5dfbc0b5e5492939c32b474f195f89e12e

Scanner detections:
33 / 68

Status:
Malware

Analysis date:
5/2/2024 9:13:13 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-Trojan/Fakesys.130048
2013.08.29

Avira AntiVirus
TR/Spy.Agent.xaj
7.11.98.178

avast!
Win32:AutoRun-BHW [Wrm]
2014.9-170315

AVG
BackDoor.Generic12
2018.0.2439

Bitdefender
Win32.Worm.TSP
1.0.20.370

Clam AntiVirus
Trojan.Dropper-21566
0.98/18155

Comodo Security
TrojWare.Win32.TrojanDownloader.Agent.~EJY
16843

Dr.Web
DDoS.5651
9.0.1.074

Emsisoft Anti-Malware
Win32.Worm.TSP
8.17.03.15.02

ESET NOD32
Win32/Dewnad.AB
11.8739

Fortinet FortiGate
W32/DelpDldr.F
3/15/2017

F-Prot
W32/Worm.AXPU
v6.4.7.1.166

G Data
Win32.Worm.TSP
17.3.22

IKARUS anti.virus
Trojan-Dropper.Win32.Nail
17.03.15

K7 AntiVirus
EmailWorm
13.170.9419

Kaspersky
Worm.Win32.Carrier
14.0.0.-1311

Malwarebytes
Worm.Autorun
v2017.03.15.02

McAfee
Backdoor-EJV
5600.6095

Microsoft Security Essentials
Backdoor:Win32/Darkddoser.D
1.163.1557.0

MicroWorld eScan
Win32.Worm.TSP
18.0.0.222

NANO AntiVirus
Trojan.Win32.Bybz.jrid
17.03.15

Norman
Delf.FFYV
11.20170315

nProtect
Trojan-Dropper/W32.Nail.130048.B
13.08.29.01

Panda Antivirus
Generic Trojan
17.03.15.02

Quick Heal
Backdoor.IRCbot.K3
3.17.12.00

Rising Antivirus
Trojan.Win32.Generic.11E4E026
23.00.65.17313

Sophos
Mal/DelpDldr-F
4.91

Total Defense
Win32/SillyAutorun.CES
37.0.10498

Trend Micro House Call
TROJ_MALEX.P
7.2.74

Trend Micro
TROJ_MALEX.P
10.465.15

Vba32 AntiVirus
Worm.Bybz
3.12.22.3

VIPRE Antivirus
Worm.Win32.Autorun.rx
20976

ViRobot
Worm.Win32.Bybz.130048
17.03.15

File size:
127 KB (130,048 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\crypted.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x1B238

Entry point:
55, 8B, EC, 83, C4, EC, 53, 33, C0, 89, 45, EC, B8, 50, B1, 41, 00, E8, 8A, B0, FE, FF, 33, C0, 55, 68, 44, B3, 41, 00, 64, FF, 30, 64, 89, 20, B2, 01, A1, 2C, 78, 41, 00, E8, A8, 86, FE, FF, 8B, D8, 8B, C3, E8, 17, C8, FF, FF, B8, 74, D9, 41, 00, BA, 5C, B3, 41, 00, E8, 80, 92, FE, FF, B1, 01, B2, 01, A1, B8, 7B, 41, 00, E8, 02, 86, FF, FF, A3, 6C, D9, 41, 00, 8D, 4D, EC, 8B, 43, 04, 8B, 00, BA, 70, B3, 41, 00, E8, 97, EB, FF, FF, 8B, 55, EC, A1, 6C, D9, 41, 00, 05, F0, 01, 00, 00, E8, 49, 92, FE, FF, A1...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
105 KB (107,520 bytes)

Remove crypted.exe - Powered by Reason Core Security