{29e01909-c3e4-4a0c-ac46-148607a2ce24}

AdwareBooC

WAT Software Rotterdam

The file {29e01909-c3e4-4a0c-ac46-148607a2ce24} by WAT Software Rotterdam has been detected as a potentially unwanted program by 33 anti-malware scanners.
Publisher:
WAT Software Rotterdam  (signed and verified)

Product:
AdwareBooC

Version:
1.0.0.0

MD5:
87e4959fefec297ebbf42de79b5c88f6

SHA-1:
eba50d6b266b527025cd624003799bdda9a6bc86

SHA-256:
4f0033e811fe2497b38f0d45df958829d01933ebe7d331079eefc8e38fbeaa61

Scanner detections:
33 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 3:22:17 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.2276412
640

Agnitum Outpost
FraudTool.Agent
7.1.1

AhnLab V3 Security
Trojan/Win32.FakeAV
2015.04.21

Avira AntiVirus
TR/FakeAV.sgd
3.6.1.96

avast!
Win32:FakeAV-FLW [Trj]
2014.9-150505

AVG
Bladabindi
2016.0.3118

Bitdefender
Trojan.GenericKD.2276412
1.0.20.625

Comodo Security
TrojWare.Win32.Hoax.FakeAV.~WQ
21841

Dr.Web
Trojan.FakeAV.17850
9.0.1.0125

Emsisoft Anti-Malware
Rogue.Win32.FakeAdw
8.15.05.05.03

ESET NOD32
MSIL/Hoax.Agent.NBD
9.11506

Fortinet FortiGate
W32/Agent.GDC!tr
5/5/2015

F-Secure
Trojan.GenericKD.2276412
11.2015-05-05_3

G Data
Trojan.GenericKD.2276412
15.5.25

IKARUS anti.virus
Trojan.Fakeav
t3scan.1.8.9.0

K7 AntiVirus
Trojan
13.202.15654

Kaspersky
Trojan-FakeAV.Win32.Agent
14.0.0.2087

Malwarebytes
Trojan.FakeAdwareCleaner.A
v2015.05.05.03

McAfee
Artemis!87E4959FEFEC
5600.6774

Microsoft Security Essentials
Rogue:Win32/Wadebooc
1.1.11602.0

MicroWorld eScan
Trojan.GenericKD.2276412
16.0.0.375

NANO AntiVirus
Trojan.Win32.FakeAV.dnxbbe
0.30.20.1219

nProtect
Trojan.GenericKD.2276412
15.04.20.01

Panda Antivirus
Trj/CI.A
15.05.05.03

Qihoo 360 Security
Trojan.Generic
1.0.0.1015

Quick Heal
TrojanFakeAV.Agent.r3
5.15.14.00

Sophos
Generic PUA OL
4.98

Trend Micro House Call
TROJ_SPNV.03BF15
7.2.125

Trend Micro
TROJ_SPNV.03BF15
10.465.05

Vba32 AntiVirus
TrojanFakeAV.Agent
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
39536

ViRobot
Trojan.Win32.S.Agent.172648.A[h]
2014.3.20.0

Zillya! Antivirus
Trojan.Agent.Win32.513148
2.0.0.2145

File size:
168.6 KB (172,648 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2014

Original file name:
AdwareBooC.exe

Language:
Language Neutral

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/14/2014 5:00:00 PM

Valid to:
7/15/2015 4:59:59 PM

Subject:
CN=WAT Software Rotterdam, O=WAT Software Rotterdam, STREET=Zestienhovensekade 197, L=Rotterdam, S=Zuid Holland, PostalCode=3043KM, C=NL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
5182E5B24A4BCE268960C54B36E71D02

File PE Metadata
Compilation timestamp:
2/4/2015 12:00:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:sqp6y91BH91Be/MbNBQ3MypF06N25xOT5Ng2WV4:Oy/BH/Be00Mypk5sYp4

Entry address:
0x299FE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.6237

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
159 KB (162,816 bytes)

Remove {29e01909-c3e4-4a0c-ac46-148607a2ce24} - Powered by Reason Core Security