autocom 2013.3 kg v1.exe

keygen 1

The executable autocom 2013.3 kg v1.exe has been detected as malware by 16 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from s6703.chomikuj.pl.
Product:
keygen 1

Version:
1.0.0.0

MD5:
55b66bd47bfa28ee27aaa9dcb4dc8358

SHA-1:
c30eff3285952ac134cad67202d538a6e35dfe29

SHA-256:
822fecefc73b4b6926f302ac79831e5844d7e64af72132362a50d392b9188f83

Scanner detections:
16 / 68

Status:
Malware

Analysis date:
12/26/2024 4:08:06 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Trojan.Heur.RP.iz0aaWajYf
829

Avira AntiVirus
TR/Spy.1191936.77
7.11.181.38

avast!
Win32:Malware-gen
2014.9-141028

AVG
Generic10_c
2015.0.3307

Baidu Antivirus
Trojan.Win32.Themida
4.0.3.141028

Bitdefender
Gen:Trojan.Heur.RP.iz0aaWajYf
1.0.20.1505

Bkav FE
HW32.Packed
1.3.0.6185

Comodo Security
UnclassifiedMalware
19890

Emsisoft Anti-Malware
Gen:Trojan.Heur.RP.iz0aaWajYf
8.14.10.28.09

ESET NOD32
Win32/Packed.Themida (variant)
8.10617

F-Secure
Gen:Trojan.Heur.RP.iz0aaWajYf
11.2014-28-10_3

G Data
Gen:Trojan.Heur.RP.iz0aaWajYf
14.10.24

McAfee
Artemis!55B66BD47BFA
5600.6963

MicroWorld eScan
Gen:Trojan.Heur.RP.iz0aaWajYf
15.0.0.903

Qihoo 360 Security
Win32/Trojan.Spy.ff0
1.0.0.1015

VIPRE Antivirus
Trojan.Win32.Generic
34220

File size:
1.1 MB (1,191,936 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2012

Original file name:
autocom 2013.3 kg v1.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
12/22/2013 3:13:12 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:RXYEgbn1iafF6o4sEfDRol1nLNX21cceVHwZeFU5yOH2MDL:RMi5RJOBLNm1HeyVQlS

Entry address:
0x28C000

Entry point:
52, 89, E2, 81, C2, 04, 00, 00, 00, 68, 48, 1D, 00, 00, 89, 2C, 24, BD, 04, 00, 00, 00, 29, EA, 5D, 87, 14, 24, 5C, 68, 57, 27, 00, 00, 89, 2C, 24, 89, 04, 24, 83, EC, 04, 89, 1C, 24, 89, 2C, 24, 89, 1C, 24, E8, 01, 00, 00, 00, CC, FF, 34, 24, 58, 51, 89, E1, 81, C1, 04, 00, 00, 00, 83, C1, 04, 87, 0C, 24, 5C, 68, 19, 05, 00, 00, 89, 04, 24, 8B, 1C, 24, 83, C4, 04, 53, BB, 01, 00, 00, 00, 01, D8, 8B, 1C, 24, 81, C4, 04, 00, 00, 00, 55, 89, 0C, 24, B9, 00, 80, 0D, 00, 05, 2D, 36, 21, 28, 29, C8, 2D, 2D, 36...
 
[+]

Code size:
642.5 KB (657,920 bytes)

The file autocom 2013.3 kg v1.exe has been seen being distributed by the following URL.

Remove autocom 2013.3 kg v1.exe - Powered by Reason Core Security