jdk-8u51-windows-i586.exe

The executable jdk-8u51-windows-i586.exe has been detected as malware by 29 anti-virus scanners. The file has been seen being downloaded from idse.imss.gob.mxii.cf.
MD5:
cc760cdea343f7de9aaeec571dff0d62

SHA-1:
0cffeea9f9205fc4b6a39eaef73e3ceeb9d46afc

SHA-256:
f875b8e33f464e1d7498c71f3f2045a4a42120bcb3e7946896a76ef3b4ec8f88

Scanner detections:
29 / 68

Status:
Malware

Analysis date:
1/13/2025 8:41:33 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.166284
350

Agnitum Outpost
Trojan.Injector
7.1.1

AhnLab V3 Security
Backdoor/Win32.Androm
2015.11.04

Avira AntiVirus
TR/Crypt.ZPACK.190859
8.3.2.2

Arcabit
Trojan.Zusy.D2898C
1.0.0.585

avast!
Win32:Malware-gen
2014.9-160220

AVG
FileCryptor
2017.0.2828

Baidu Antivirus
Trojan.Win32.Yakes
4.0.3.16220

Bitdefender
Gen:Variant.Zusy.166284
1.0.20.255

Dr.Web
Trojan.Encoder.2654
9.0.1.051

Emsisoft Anti-Malware
Gen:Variant.Zusy.166284
8.16.02.20.05

ESET NOD32
Win32/Injector.CKTR (variant)
10.12512

Fortinet FortiGate
W32/Injector.CKST!tr
2/20/2016

F-Secure
Gen:Variant.Zusy.166284
11.2016-20-02_7

G Data
Gen:Variant.Zusy.166284
16.2.25

IKARUS anti.virus
Trojan.Win32.Injector
t3scan.1.9.5.0

K7 AntiVirus
Trojan
13.212.17739

Kaspersky
Trojan.Win32.Yakes
14.0.0.634

Malwarebytes
Ransom.FileCryptor
v2016.02.20.05

McAfee
Artemis!CC760CDEA343
5600.6484

Microsoft Security Essentials
Trojan:Win32/Dynamer!ac
1.1.12205.0

MicroWorld eScan
Gen:Variant.Zusy.166284
17.0.0.153

NANO AntiVirus
Trojan.Win32.Androm.dybbsg
0.30.26.4437

Panda Antivirus
Trj/RansomCrypt.C
16.02.20.05

Rising Antivirus
PE:Malware.Obscure/Heur!1.9E03 [F]
23.00.65.16218

Sophos
Mal/Inject-FX
4.98

Trend Micro
TROJ_GEN.R00JC0DJN15
10.465.20

VIPRE Antivirus
Trojan.Win32.Generic
44992

Zillya! Antivirus
Backdoor.Androm.Win32.28818
2.0.0.2491

File size:
307.2 KB (314,616 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\jdk-8u51-windows-i586.exe

File PE Metadata
Compilation timestamp:
10/19/2015 6:45:50 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:YDB6rZMA9zMahMq9eR51wbJvO9W6ijbVkJSxCDKI7SvfCE/:YF6rZdzitR5429LivQSxx/T

Entry address:
0x1200

Entry point:
55, 8B, EC, E8, 78, FF, FF, FF, 6A, 1D, E8, F1, FD, FF, FF, 83, C4, 04, 68, E8, 03, 00, 00, FF, 15, 2C, D0, 40, 00, E8, 1E, A2, 00, 00, 68, D0, 07, 00, 00, FF, 15, 2C, D0, 40, 00, E8, 9E, FF, FF, FF, E8, A9, 9B, 00, 00, E8, A4, 9B, 00, 00, E8, 9F, 9B, 00, 00, E8, 9A, 9B, 00, 00, E8, 65, 85, 00, 00, 33, C0, 5D, C2, 10, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 83, EC, 0C, 33, C0, 88, 45, F7, 6A, 00, 6A, 00, 6A, 00, 6A, 00, 6A, 00, 6A, 00, 6A, 00, 6A, 00, FF, 15, 10, D0, 40...
 
[+]

Entropy:
7.4871

Developed / compiled with:
Microsoft Visual C++

Code size:
45.5 KB (46,592 bytes)

The file jdk-8u51-windows-i586.exe has been seen being distributed by the following URL.

Remove jdk-8u51-windows-i586.exe - Powered by Reason Core Security