6.txt

The file 6.txt has been detected as malware by 29 anti-virus scanners.
MD5:
7e92b62cbc19e474f1e4fab42cc2d37d

SHA-1:
6f7e427423ce45839c3e258c5d4eb6993bfe9b0a

SHA-256:
ac9fc09272bc6e898ccca96a4d2b4f9736f45d5dbbc25a4e73ab64d57776de97

Scanner detections:
29 / 68

Status:
Malware

Analysis date:
11/29/2024 4:50:33 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Trojan.Crypt.Delf.F.LC4@aOHza4g
-40

Agnitum Outpost
Trojan.Agent
7.1.1

AhnLab V3 Security
Trojan/Win32.Banker
2015.09.16

Arcabit
Trojan.Crypt.Delf.F.ED1178C
1.0.0.527

avast!
Win32:Banker-MDM [Trj]
2014.9-170316

AVG
PSW.Banker7
2018.0.2438

Baidu Antivirus
Trojan.Win32.Banker
4.0.3.17316

Bitdefender
Gen:Trojan.Crypt.Delf.F.LC4@aOHza4g
1.0.20.375

Comodo Security
TrojWare.Win32.Spy.Banker.CF
23244

Dr.Web
Trojan.PWS.Banker1.18237
9.0.1.075

Emsisoft Anti-Malware
Gen:Trojan.Crypt.Delf.F.LC4@aOHza4g
8.17.03.16.06

ESET NOD32
Win32/Spy.Banker.ZSS (variant)
11.12260

Fortinet FortiGate
W32/Generic.CCO!tr
3/16/2017

F-Secure
Gen:Trojan.Crypt.Delf.F.LC4@aOHza4g
11.2017-16-03_5

G Data
Gen:Trojan.Crypt.Delf.F.LC4@aOHza4g
17.3.25

IKARUS anti.virus
Trojan-PWS.Banker6
t3scan.1.9.5.0

K7 AntiVirus
Spyware
13.210.17227

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.-1316

McAfee
RDN/PWS-Banker
5600.6094

Microsoft Security Essentials
TrojanSpy:Win32/Delf.CM
1.1.12002.0

MicroWorld eScan
Gen:Trojan.Crypt.Delf.F.LC4@aOHza4g
18.0.0.225

NANO AntiVirus
Trojan.Win32.Banker1.dvcpsn
0.30.24.3283

Panda Antivirus
Trj/CI.A
17.03.16.06

Qihoo 360 Security
HEUR/QVM25.0.Malware.Gen
1.0.0.1015

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D[F1]
23.00.65.17314

Sophos
Troj/Bancos-CCO
4.98

Trend Micro
TROJ_GEN.R047C0DH815
10.465.16

VIPRE Antivirus
Trojan.Win32.Generic
43794

Zillya! Antivirus
Trojan.Banker.Win32.94475
2.0.0.2399

File size:
600 KB (614,400 bytes)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\6.txt

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x805BC

Entry point:
55, 8B, EC, 83, C4, C4, 53, B8, 1C, 01, 48, 00, E8, 17, 66, F8, FF, 8B, 1D, B0, 2B, 48, 00, 6A, EC, 8B, 03, 8B, 40, 30, 50, E8, B8, 6E, F8, FF, 0D, 80, 00, 00, 00, 50, 6A, EC, 8B, 03, 8B, 40, 30, 50, E8, 95, 70, F8, FF, 8B, 03, E8, 6E, 7F, FD, FF, 8B, 0D, 90, 27, 48, 00, 8B, 03, 8B, 15, B0, C4, 47, 00, E8, 73, 7F, FD, FF, 8B, 0D, 44, 2D, 48, 00, 8B, 03, 8B, 15, 54, FF, 47, 00, E8, 60, 7F, FD, FF, 8B, 03, C6, 40, 5B, 00, 8B, 03, 8B, 40, 44, 33, D2, E8, CA, 15, FD, FF, 8B, 03, E8, C7, 7F, FD, FF, 5B, E8, 39...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
510 KB (522,240 bytes)

Remove 6.txt - Powered by Reason Core Security