slavica.exe

The executable slavica.exe has been detected as malware by 45 anti-virus scanners.
MD5:
f46ebc0d315dacf75e44e3c7af55423d

SHA-1:
48b52eecdb6cfca5aa43a0400e68f4f9fb1ddcb0

SHA-256:
f10339a89513b0e8eee0cf6f04b42dbfe2b3547d57cbb301885b6d34c2945710

Scanner detections:
45 / 68

Status:
Malware

Analysis date:
5/2/2024 2:18:25 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Rimecud.1
-39

Agnitum Outpost
Worm.P2P.Palevo
7.1.1

AhnLab V3 Security
Worm/Win32.Palevo
2015.09.12

Avira AntiVirus
TR/Crypt.XPACK.Gen2
8.3.2.2

avast!
Win32:Crumpache [Cryp]
2014.9-170315

AVG
Cryptic
2018.0.2439

Baidu Antivirus
Worm.Win32.Palevo
4.0.3.17315

Bitdefender
Gen:Variant.Rimecud.1
1.0.20.370

Bkav FE
W32.RimecudA.Fam
1.3.0.7237

Clam AntiVirus
Worm.Palevo-14375
0.98/21511

Comodo Security
MalCrypt.Indus!
23217

Dr.Web
Trojan.Packed.20312
9.0.1.074

Emsisoft Anti-Malware
Gen:Variant.Rimecud
8.17.03.15.03

ESET NOD32
Win32/Peerfrag.HH (variant)
11.12239

Fortinet FortiGate
W32/Palevo.AC!worm
3/15/2017

F-Prot
W32/Rimecud.I.gen
v6.4.7.1.166

F-Secure
Gen:Variant.Rimecud.1
11.2017-15-03_4

G Data
Gen:Variant.Rimecud
17.3.25

IKARUS anti.virus
P2P-Worm.Win32.Palevo
t3scan.1.9.5.0

K7 AntiVirus
Backdoor
13.210.17194

Kaspersky
P2P-Worm.Win32.Palevo
14.0.0.-1311

McAfee
Generic Dropper.xj
5600.6095

MicroWorld eScan
Gen:Variant.Rimecud.1
18.0.0.222

NANO AntiVirus
Trojan.Win32.Palevo.dhjpgs
0.30.24.3283

Panda Antivirus
W32/P2PWorm.NR
17.03.15.03

Qihoo 360 Security
Malware.Radar01.Gen
1.0.0.1015

Quick Heal
Worm.Palevo
3.17.14.00

Rising Antivirus
PE:Malware.Obscure!1.9C59[F1]
23.00.65.17313

Sophos
Mal/ZboCheMan-A
4.98

Total Defense
Win32/Rimecud.E!generic
37.1.62.1

Trend Micro House Call
Mal_Palevo5
7.2.74

Trend Micro
Mal_Palevo5
10.465.15

Vba32 AntiVirus
Malware-Cryptor.Limpopo
3.12.26.4

VIPRE Antivirus
Packed.Win32.Crum
43676

File size:
154.5 KB (158,208 bytes)

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\microsoft\windows\burn\burn\ciribu\slavica.exe

File PE Metadata
Compilation timestamp:
5/14/2008 3:16:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
17.14

Entry address:
0x15B0

Entry point:
55, 8B, EC, 83, C4, BC, C7, 05, 53, E2, 40, 00, 10, 09, 00, 00, FF, 15, C0, C1, 40, 00, 83, 75, C0, E4, 81, 05, 53, E2, 40, 00, 5A, 15, 00, 00, 68, 33, F0, 40, 00, 68, C1, 5D, 41, 00, 6A, 08, 68, 81, 87, 41, 00, E8, 2B, FA, FF, FF, FF, 15, 50, C0, 40, 00, 81, 05, 53, E2, 40, 00, 74, 05, 00, 00, 81, 05, 53, E2, 40, 00, 7D, 0F, 00, 00, E8, 87, FA, FF, FF, 81, 05, 53, E2, 40, 00, 3C, 0C, 00, 00, 68, CE, BD, 07, 00, 6A, C6, 68, 95, 33, 41, 00, E8, FC, FA, FF, FF, FF, 15, B0, C0, 40, 00, 81, 05, 53, E2, 40, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
41.5 KB (42,496 bytes)

Remove slavica.exe - Powered by Reason Core Security