netstream.exe

The executable netstream.exe has been detected as malware by 2 anti-virus scanners.
MD5:
15eeabf873fd032f203b82d9f4bd41b2

SHA-1:
4a3a0318ee0ef567379c8e0112d86cb501497b27

SHA-256:
0a4c8b8bc2bae1d1b37b6fb09e321a6a22f1b276d093e1629588f4566a4881c7

Scanner detections:
2 / 68

Status:
Malware

Analysis date:
5/5/2024 11:26:13 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Kryptik.CQLG trojan
6.3.12010.0

Microsoft Security Essentials
TrojanProxy:Win32/Bunitu.Q!bit
1.237.1169.0

File size:
238 KB (243,712 bytes)

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\netstream.exe

File PE Metadata
Compilation timestamp:
3/6/2017 7:21:35 AM

OS version:
3.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x22560

Entry point:
55, 8B, EC, 83, EC, 1C, 57, 68, E2, 10, 00, 00, A1, F4, C7, 43, 00, 50, FF, 15, BC, 35, 42, 00, 85, C0, 74, 0A, B8, 37, 00, 00, 00, E9, 65, 03, 00, 00, EB, 00, 8B, D2, 8B, 55, 08, 8B, D2, 89, 15, FC, C7, 43, 00, 89, 2D, DC, C7, 43, 00, C6, 45, F3, 00, C7, 45, F4, 00, 00, 00, 00, 0F, B6, 4D, F3, 83, C1, 72, 8B, 55, F4, A1, 44, C4, 43, 00, 66, 89, 4C, 50, 08, 0F, B6, 4D, F3, 83, C1, 66, 8B, 55, F4, A1, 44, C4, 43, 00, 66, 89, 4C, 50, 0A, 0F, B6, 4D, F3, 83, C1, 61, 8B, 55, F4, A1, 44, C4, 43, 00, 66, 89, 4C...
 
[+]

Entropy:
4.1003

Developed / compiled with:
Microsoft Visual C++

Code size:
134.5 KB (137,728 bytes)

Remove netstream.exe - Powered by Reason Core Security