malware14

Realtek NIC Diagnostic Utility

Jagdeependra

The file malware14 has been detected as malware by 17 anti-virus scanners.
Publisher:
Realtek Semiconductor Corporation  (signed by Jagdeependra)

Product:
Realtek NIC Diagnostic Utility

Version:
2.0.2.3

MD5:
c0c3b04822c5898f8213f2817d074339

SHA-1:
6acf1d951c3dadf0c5aaa9a8f3a89808a953b2f5

SHA-256:
dc7a428a4b6bdb978302e25614d02166878a0aa0446b572d3dba18c577e54db9

Scanner detections:
17 / 68

Status:
Malware

Analysis date:
12/5/2024 1:40:15 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Mikey.18771
573

Avira AntiVirus
TR/Black.Gen2
8.3.1.6

Arcabit
Trojan.Mikey.D4953
1.0.0.425

avast!
Win32:Agent-AVCX [Trj]
2014.9-150711

AVG
Agent_r
2016.0.3051

Bitdefender
Gen:Variant.Mikey.18771
1.0.20.960

Bkav FE
HW32.Packed
1.3.0.6979

Emsisoft Anti-Malware
Gen:Variant.Mikey.18771
8.15.07.11.08

ESET NOD32
Win32/Agent.WSY (variant)
9.11925

Fortinet FortiGate
W32/FinSpy.A!tr
7/11/2015

G Data
Gen:Variant.Mikey.18771
15.7.25

IKARUS anti.virus
Trojan.Win32.Agent
t3scan.1.9.5.0

Kaspersky
Trojan-Spy.Win32.FinSpy
14.0.0.1751

MicroWorld eScan
Gen:Variant.Mikey.18771
16.0.0.576

Panda Antivirus
Trj/Genetic.gen
15.07.11.08

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
23.00.65.15709

Sophos
Mal/VMProtBad-A
4.98

File size:
326.8 KB (334,600 bytes)

Product version:
2.0.2.3

Copyright:
Copyright (C) 2012 Realtek Semiconductor Corporation

Language:
Language Neutral

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/1/2013 2:00:00 AM

Valid to:
7/2/2015 1:59:59 AM

Subject:
CN=Jagdeependra, OU=tech, O=Jagdeependra, STREET=r/o sehi kala, L=chirwa, S=rajasthan, PostalCode=333026, C=IN

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
55086D0B1A4EE0E271F82DCCC75233CB

File PE Metadata
Compilation timestamp:
7/18/2014 11:38:14 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:gbteCrolbq2FaHjaqk428GbBLJuIqpNiOvJjlnf9ENlxwLRBH:OecuqMaHjaVJzMZlO+VBH

Entry address:
0x9297C

Entry point:
9C, 60, C7, 44, 24, 20, DF, 2B, 28, F4, 89, 54, 24, 08, E9, E9, AC, 01, 00, F8, F8, 29, C0, 9C, 89, 4C, 24, 04, 8D, 64, 24, 08, E8, 33, EB, FF, FF, E8, 08, 40, FD, FF, 12, 7D, C9, D4, 10, 1B, A9, 61, 10, 9A, A2, 9D, 6D, 8D, C5, D0, BE, FE, 42, 4D, 75, 80, 42, 82, 4C, 8C, 62, A2, F6, 01, 5D, 68, 4E, 8E, 70, B0, 96, D6, 80, 5C, 80, 15, 39, DF, 59, 29, 0F, 10, EC, B7, 42, 68, 88, 2E, 00, 6B, 3F, E4, 49, 08, 28, D2, F0, EE, D4, 14, 64, 6F, 1D, F9, F3, 33, D9, B5, 5F, 3B, FD, CD, 72, 1C, DA, 08, 12, 12, 07, B1...
 
[+]

Entropy:
7.9118  (probably packed)

Code size:
167.5 KB (171,520 bytes)

Remove malware14 - Powered by Reason Core Security