loader ca.rar

The file loader ca.rar has been detected as a potentially unwanted program by 15 anti-malware scanners. The file has been seen being downloaded from download7.userscloud.com.
MD5:
638ef6578c25dd5856862aeab12a6d2a

SHA-1:
41da656f4dee90c2e6749816d8959f0ea1c00c4d

SHA-256:
dec493883b3ad9e0ffe57ffd4ed432b165406db3c74d1a4a60ff287130fb3198

Scanner detections:
15 / 68

Status:
Potentially unwanted

Analysis date:
11/30/2024 8:47:39 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Strictor.80788
6146690

avast!
Win32:Malware-gen
2014.9-150410

Baidu Antivirus
Hacktool.MSIL.DllInject
4.0.3.15410

Bitdefender
Gen:Variant.Strictor.80788
1.0.20.500

Emsisoft Anti-Malware
Gen:Variant.Strictor.80788
9.0.0.4799

ESET NOD32
MSIL/DllInject.DV potentially unsafe (variant)
9.11404

F-Secure
Gen:Variant.Strictor.80788
11.2015-10-04_6

G Data
Gen:Variant.Strictor.80788
15.4.25

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.8.9.0

K7 AntiVirus
Unwanted-Program
13.202.15438

McAfee
Artemis!A4C76C700820
5600.6800

MicroWorld eScan
Gen:Variant.Strictor.80788
16.0.0.300

Sophos
Virus 'Mal/MsilInj-G'
5.12

Trend Micro House Call
Suspicious_GEN.F47V0326
7.2.100

VIPRE Antivirus
Trojan.Win32.Generic
38930

File size:
62.2 KB (63,647 bytes)

Common path:
C:\users\{user}\downloads\loader ca.rar

The file loader ca.rar has been seen being distributed by the following URL.

Remove loader ca.rar - Powered by Reason Core Security