fjfjgm.exe

Pidgin

Daniel Atallah

The executable fjfjgm.exe has been detected as malware by 31 anti-virus scanners.
Publisher:
Daniel Atallah  (signed and verified)

Product:
Pidgin

Version:
2.10.12.

MD5:
2056574d5481462be8cb35b18e29c088

SHA-1:
844ddf19410042b9675d3f7f63ed5cd1de9df50e

SHA-256:
5388280e934490fbefd6c48a3e262d15936bb94c3ce4eba890f6dad6433b9f8f

Scanner detections:
31 / 68

Status:
Malware

Analysis date:
12/25/2024 5:19:01 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.2998653
28

AegisLab AV Signature
W32.W.AutoRun
2.1.4+

Avira AntiVirus
TR/Spy.Agent.1624834
8.3.3.2

Arcabit
Trojan.Generic.D2DC17D
1.0.0.656

avast!
Win32:Malware-gen
2014.9-170107

AVG
MultiDropper_c
2018.0.2506

Bitdefender
Trojan.GenericKD.2998653
1.0.20.35

Bkav FE
W32.HfsAtITIST
1.3.0.7717

Comodo Security
UnclassifiedMalware
24455

Dr.Web
Trojan.DownLoader19.5780
9.0.1.07

Emsisoft Anti-Malware
Trojan.GenericKD.2998653
8.17.01.07.02

ESET NOD32
Win32/Obfuscated.Autoit
11.13136

Fortinet FortiGate
W32/Inject.C!tr
1/7/2017

F-Secure
Trojan.GenericKD.2998653
11.2017-07-01_7

G Data
Trojan.GenericKD.2998653
17.1.25

IKARUS anti.virus
Trojan.Win32.Obfuscated
t3scan.2.0.8.0

K7 AntiVirus
Trojan
13.214.18938

Kaspersky
Trojan.Win32.Inject
14.0.0.-975

McAfee
Artemis!2056574D5481
5600.6162

Microsoft Security Essentials
TrojanSpy:MSIL/Omaneat.B
1.1.12505.0

MicroWorld eScan
Trojan.GenericKD.2998653
18.0.0.21

NANO AntiVirus
Trojan.Win32.DownLoader19.dzxeno
1.0.18.6677

nProtect
Trojan.GenericKD.2998653
16.03.04.01

Panda Antivirus
Trj/CI.A
17.01.07.02

Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen
1.0.0.1120

Quick Heal
TrojanSpy.Omaneat.g4
1.17.14.00

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
23.00.65.17105

Sophos
Mal/Generic-S
4.98

Trend Micro
TROJ_GEN.R03EC0DAP16
10.465.07

VIPRE Antivirus
Trojan.Win32.Generic
47700

Zillya! Antivirus
Trojan.Inject.Win32.190179
2.0.0.2708

File size:
1.5 MB (1,624,834 bytes)

Product version:
2.10.12.

Copyright:
Copyright (C) 1998-2010 The Pidgin developer community (See the COPYRIGHT file in the source distribution).

Original file name:
TSGJYTC.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\ProgramData\952178\952081\fjfjgm.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
9/11/2014 9:36:56 AM

Valid to:
9/11/2016 10:37:54 AM

Subject:
E=datallah@pidgin.im, CN=Daniel Atallah, L=Holland, S=Michigan, C=US

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
1015

File PE Metadata
Compilation timestamp:
12/24/2008 10:00:07 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x17770

Entry point:
E8, C4, AF, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, C1, 8B, 4D, 08, C7, 00, 88, DA, 47, 00, 8B, 09, 83, 60, 08, 00, 89, 48, 04, 5D, C2, 08, 00, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 56, 8B, F1, C7, 06, 88, DA, 47, 00, 8B, 43, 08, 89, 46, 08, 85, C0, 8B, 43, 04, 57, 74, 31, 85, C0, 74, 27, 50, E8, EF, D3, FF, FF, 8B, F8, 47, 57, E8, 10, D3, FF, FF, 59, 59, 89, 46, 04, 85, C0, 74, 18, FF, 73, 04, 57, 50, E8, F2, AF, 00, 00, 83, C4, 0C, EB, 09, 83, 66, 04, 00, EB, 03, 89, 46, 04, 5F, 8B, C6, 5E, 5B...
 
[+]

Code size:
495.5 KB (507,392 bytes)

Remove fjfjgm.exe - Powered by Reason Core Security