documento-pedido-0023158897000203056000015000.exe

www.portix.org

The executable documento-pedido-0023158897000203056000015000.exe has been detected as malware by 10 anti-virus scanners.
Publisher:
www.portix.org  (signed and verified)

MD5:
5d414fa267cbd770a57b60c5dc26e167

SHA-1:
110e24a18a4ba4b9203c777ba0053c0baec66bff

SHA-256:
42928cb47ce5088c842dd61a912df186660d930b7eee6496bcf98e28c8cc4603

Scanner detections:
10 / 68

Status:
Malware

Analysis date:
12/26/2024 3:50:38 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Graftor.253159
210

Arcabit
Trojan.Graftor.D3DCE7
1.0.0.585

Baidu Antivirus
Trojan.Win32.Banload
4.0.3.1678

Bitdefender
Gen:Variant.Graftor.253159
1.0.20.950

Emsisoft Anti-Malware
Gen:Variant.Graftor.253159
8.16.07.08.05

ESET NOD32
Win32/TrojanDownloader.Banload.WPN (variant)
10.12439

G Data
Gen:Variant.Graftor.253159
16.7.25

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.-64

MicroWorld eScan
Gen:Variant.Graftor.253159
17.0.0.570

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.26.4

File size:
927.9 KB (950,152 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\documento-pedido-0023158897000203056000015000.exe

Digital Signature
Signed by:

Authority:
www.portix.org

Valid from:
10/14/2015 8:47:19 AM

Valid to:
10/14/2016 8:47:19 AM

Subject:
CN=www.portix.org, L=EUA, S=EUA, C=US

Issuer:
CN=www.portix.org, L=EUA, S=EUA, C=US

Serial number:
00F99E4B4DEE4E42BF

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:w3stKpTC2nuAW5AdjJ1fPkkqZHjfE3Pm4iLhSjDsgI/p53sVTUqncw:C+GznuAW5ABJ13kZD8fDiLojxJVTU+7

Entry address:
0xC52D8

Entry point:
55, 8B, EC, 83, C4, F0, B8, A0, 4E, 4C, 00, E8, C0, 15, F4, FF, A1, 30, E4, 4C, 00, 8B, 00, E8, BC, 76, FA, FF, 8B, 0D, A0, E5, 4C, 00, A1, 30, E4, 4C, 00, 8B, 00, 8B, 15, 90, 39, 4A, 00, E8, BC, 76, FA, FF, 8B, 0D, E0, E5, 4C, 00, A1, 30, E4, 4C, 00, 8B, 00, 8B, 15, 80, 4C, 4C, 00, E8, A4, 76, FA, FF, A1, 30, E4, 4C, 00, 8B, 00, C6, 40, 5B, 00, A1, 30, E4, 4C, 00, 8B, 00, E8, 0D, 77, FA, FF, E8, 10, EE, F3, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
785 KB (803,840 bytes)