emeklilik gün hesaplama.exe

Google Chrome

The executable emeklilik gün hesaplama.exe has been detected as malware by 13 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from 1fichier.com.
Publisher:
Google Chrome

Product:
Google Chrome

Version:
2.0.0.5

MD5:
0bbc97bdad26aae5b65b7b4b118053e6

SHA-1:
a3d3d6c0d2f2f76b3b489356a415d8ab9e68b26e

SHA-256:
fb04e3ac697abf0d63f374667b948f437d2daa5bcd50b4147a400b4f77dd551f

Scanner detections:
13 / 68

Status:
Malware

Explanation:
The software cotains keystroke monitoring/logging capablities which may or may not be installed without the user's knowledge.

Analysis date:
11/27/2024 1:06:07 PM UTC  (today)

Scan engine
Detection
Engine version

AegisLab AV Signature
Troj.W32.Gen
2.1.4+

Avira AntiVirus
TR/Dropper.MSIL.cqyv
8.3.3.4

avast!
Win32:Malware-gen
2014.9-160707

AVG
Luhe.MSIL.D
2017.0.2689

Comodo Security
TrojWare.MSIL.Bladabindi.ATR
24744

ESET NOD32
MSIL/Kryptik.CQR (variant)
10.13287

IKARUS anti.virus
Trojan-Spy.MSIL.Keylogger
t3scan.2.0.9.0

Kaspersky
Trojan.MSIL.Zapchast
14.0.0.-58

Microsoft Security Essentials
VirTool:MSIL/Obfuscator.BE
1.1.12603.0

Panda Antivirus
Generic Suspicious
16.07.07.12

Qihoo 360 Security
HEUR/QVM03.0.0000.Malware.Gen
1.0.0.1120

Rising Antivirus
PE:Trojan.FakeChrome!1.9C7B [F]
23.00.65.16705

VIPRE Antivirus
Trojan.Win32.Generic
48408

File size:
412 KB (421,888 bytes)

Product version:
2.0.0.5

Copyright:
Google 2015

Trademarks:
Google Chrome

Original file name:
ywcNCswvECpE.exe

File type:
Executable application (Win32 EXE)

Language:
Turkish (Turkey)

File PE Metadata
Compilation timestamp:
4/3/2016 12:54:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:QY6npLR7CfKTg9x7fRVwNZZEcv9KRqjJQ6f2Q/EXvfDLhc92BKVE5s2Q4FgN:QY6nlR7CyUwTeGY0OOEXnE2qEA

Entry address:
0x18EDE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
92 KB (94,208 bytes)

The file emeklilik gün hesaplama.exe has been seen being distributed by the following URL.

Remove emeklilik gün hesaplama.exe - Powered by Reason Core Security