{9c820d64-1099-4018-ab4f-abde25bf6d8b}-superoneclickv2.1.1-shortfuse.zip

The file {9c820d64-1099-4018-ab4f-abde25bf6d8b}-superoneclickv2.1.1-shortfuse.zip has been detected as a potentially unwanted program by 19 anti-malware scanners. The file has been seen being downloaded from dl.xda-developers.com and multiple other hosts.
MD5:
fb2df906bcc66eff48b6e6cce3e0006b

SHA-1:
1f2165c8a65eadcc05bc21351dfc079d78235b9e

SHA-256:
9fb2cbe1f4c79135af9a3d016e782b4185ab192840129f8ebb9fdc2ff0069b52

Scanner detections:
19 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 3:18:19 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
EXP/Android.AP
7.11.113.8

avast!
ELF:Androot-J [PUP]
2014.9-140212

AVG
Android_mc
2015.0.3565

Bitdefender
Android.Exploit.PSN.A
1.0.20.215

Comodo Security
Exploit.Android.Agent.l
17258

Dr.Web
Android.Exploit.7
9.0.1.043

Emsisoft Anti-Malware
Android.Exploit.PSN
8.14.02.12.01

ESET NOD32
Android/Exploit.Lotoor.AK
8.9037

F-Prot
AndroidOS/Lotoor.L
v6.4.7.1.166

F-Secure
Exploit:Android/DroidRooter.E
11.2014-12-02_4

G Data
Android.Exploit.PSN
14.2.22

IKARUS anti.virus
Win32.Malware
t3scan.2.0.127

MicroWorld eScan
Android.Exploit.PSN.A
15.0.0.129

NANO AntiVirus
Exploit.DroidRtA.bfnewt
0.26.0.56179

Panda Antivirus
Exploit/Lotoor.B
14.02.12.01

Quick Heal
Exploit.Androot.A1
2.14.12.00

Sophos
Andr/DroidRt-A
4.94

Total Defense
AndroidOS/Rootor.A
37.0.10498

VIPRE Antivirus
Exploit.AndroidOS.Lotoor
23290

File size:
1.6 MB (1,692,242 bytes)

Common path:
C:\ProgramData\microsoft\microsoft antimalware\localcopy\{9c820d64-1099-4018-ab4f-abde25bf6d8b}-superoneclickv2.1.1-shortfuse.zip

The file {9c820d64-1099-4018-ab4f-abde25bf6d8b}-superoneclickv2.1.1-shortfuse.zip has been seen being distributed by the following 2 URLs.