limpa.exe

Kemeda

The executable limpa.exe has been detected as malware by 8 anti-virus scanners.
Publisher:
Kemeda  (signed and verified)

Version:
24.13.6.6

MD5:
7232acfcf45d18acaef00f4711f853c7

SHA-1:
9308e838a8b4fe3350ac3ea4cb79d09c3f154123

SHA-256:
fbbb8cecb5551b7056b6c9deebfd008e8050ed842e6c7e566775c9caa80fd17b

Scanner detections:
8 / 68

Status:
Malware

Analysis date:
12/28/2024 4:38:49 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Evo-gen [Susp]
160203-1

Dr.Web
BackDoor.Morphine.1
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.MSILPerseus.1983
10.0.0.5366

ESET NOD32
MSIL/Injector.MTF trojan
7.0.302.0

McAfee
Trojan.Artemis!7232ACFCF45D
18.0.204.0

Microsoft Security Essentials
Threat.Undefined
1.213.5427.0

Norman
Gen:Variant.MSILPerseus.1983
03.12.2014 13:20:04

VIPRE Antivirus
Threat.4150696
46938

File size:
426.5 KB (436,712 bytes)

Product version:
24.13.6.6

Copyright:
Copyright © 2015

Original file name:
hpc.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\roaming\limpa.exe

Digital Signature
Signed by:

Authority:
Kemeda

Valid from:
10/21/2015 7:07:25 PM

Valid to:
10/21/2016 7:07:25 PM

Subject:
CN=www.kemeda.pt, O=Kemeda, L=Lisboa, S=Lisboa, C=PK

Issuer:
CN=www.kemeda.pt, O=Kemeda, L=Lisboa, S=Lisboa, C=PK

Serial number:
008C6590B70633A028

File PE Metadata
Compilation timestamp:
11/15/2015 3:06:27 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
80.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:YK4pvsvIQ1idiFgX+eZfTAF0q3i+lBWNspWMZyCrvealZinD78ym/j:ev6jVFgXTZfDqVlINsBVVysxj

Entry address:
0x6B95E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
422.5 KB (432,640 bytes)

Remove limpa.exe - Powered by Reason Core Security