esl.exe

The executable esl.exe has been detected as malware by 25 anti-virus scanners.
MD5:
e5f2ae736a2142fcda263841dad681b2

SHA-1:
740183e5361b529033384ba01946ff950d46c4b3

SHA-256:
e9b8eba7c4c470de064ff19e7852cdfbf31d5528b8faf86d09b03f373770e7e5

Scanner detections:
25 / 68

Status:
Malware

Analysis date:
4/28/2024 9:08:39 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win32/Mabezat
17.03.13

Avira AntiVirus
Worm/Mabezat.b
17.03.13

avast!
Win32:Trojan-gen {Other}
2014.9-170313

AVG
Win32/Mabezat.A
2018.0.2440

Bitdefender
Win32.Worm.Mabezat.J
1.0.20.360

Clam AntiVirus
W32.Mabezat-2
0.98/18155

Dr.Web
Win32.HLLW.Tazebama
9.0.1.072

ESET NOD32
Win32/Mabezat
11.-

Fortinet FortiGate
W32/Mabezat.B
3/13/2017

F-Prot
W32/Mabezat.A
v6.-

F-Secure
Worm.Win32.Mabezat.b
11.2017-13-03_2

G Data
Win32.Worm.Mabezat
17.3.-

IKARUS anti.virus
Worm.Win32.Mabezat.b
17.03.13

K7 AntiVirus
Virus.Win32.Mabezat.b-3
13.-

Kaspersky
Worm.Win32.Mabezat
14.0.0.-1305

McAfee
W32/Mabezat
5600.6096

Microsoft Security Essentials
Virus:Win32/Mabezat.B
1.163.1557.0

Norman
Mabezat.B
11.20170313

Panda Antivirus
W32/Mabezat.C.worm
17.03.13.11

Prevx
Malware Dropper
3.0.3

Quick Heal
W32.Mabezat.Dr
3.17.-

Rising Antivirus
Win32.Mabezat.b
23.00.65.17311

Sophos
W32/Mabezat-B
17.03.13

Trend Micro
PE_MABEZAT.B-O
10.465.13

ViRobot
Worm.Win32.Mabezat.154751
17.03.13

File size:
152 KB (155,641 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\adobe\acrobat reader dc\esl\esl.exe

File PE Metadata
Compilation timestamp:
10/29/2007 9:17:05 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x1000

Entry point:
53, 83, EC, 44, B8, 23, 10, 40, 00, B9, 00, 00, 00, 00, 8A, 18, 80, C3, 01, 88, 18, 83, C0, 01, 83, C1, 01, 81, F9, 37, D1, 00, 00, 75, EB, B7, FF, FF, 40, FF, B8, FF, FF, FF, FF, 89, 17, 7F, C2, A2, 87, 17, 82, C0, 00, 82, BF, 00, 80, F8, FE, 26, FF, FF, 74, EA, B7, FF, 0F, 3F, FF, BA, C2, C2, C2, C2, 88, 17, B7, D4, D9, 3F, FF, 82, BF, FF, 82, C3, 43, FE, CF, C2, 5A, C2, E7, 04, FF, FF, FF, E8, 09, FF, FF, FF, B8, D7, 26, 40, FF, E8, 6A, B4, FF, FF, 67, 7D, 0F, 3F, FF, E7, 2E, C8, FF, FF, 58, C2, B8, D7...
 
[+]

Entropy:
7.0259

Code size:
52.5 KB (53,760 bytes)

Remove esl.exe - Powered by Reason Core Security