VKa47.exe

The executable VKa47.exe has been detected as malware by 7 anti-virus scanners.
Version:
0.0.0.0

MD5:
4c6b8dcc6aaa4072c8981cc8dec15bc5

SHA-1:
506b06b293a2523b3eb83cfaa6b7c2aa0f70d7c6

SHA-256:
131409d5987ee3083586b1fbb05a72960d525f83a89c9295be12370a285f1fe0

Scanner detections:
7 / 68

Status:
Malware

Analysis date:
5/12/2024 10:22:07 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Ranapama.EZ
5734824

avast!
Win32:Malware-gen
151028-1

Emsisoft Anti-Malware
Trojan.Ranapama.EZ
10.0.0.5366

ESET NOD32
MSIL/Starter.AF trojan
7.0.302.0

F-Secure
Suspected infection: Trojan.Ranapama.EZ
5.15.21

Norman
Trojan.Ranapama.EZ
07.10.2015 03:16:12

Reason Heuristics
Trojan.Starter.RP.ET (M)
16.8.1.23

File size:
4 KB (4,096 bytes)

Product version:
0.0.0.0

Original file name:
VKa47.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\vka47.exe

File PE Metadata
Compilation timestamp:
11/9/2015 2:50:39 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
48:63gRvagMN2IcwczzEJCGISV6iBzyUxWg7OulETFq:V/MNhclzDk3yoWg9ST

Entry address:
0x263E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
3.0190

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
2 KB (2,048 bytes)

Remove VKa47.exe - Powered by Reason Core Security