msmm.exe

Game

 

The executable msmm.exe has been detected as malware by 35 anti-virus scanners.
Publisher:
 

Product:
Game

Version:
1.00

MD5:
46cc9612a311ccace84a42ff4a655cc1

SHA-1:
421d3764fe09533137cf90e4c674e13cd7d7c7c6

SHA-256:
c88ddb2a007439e5fb05294886db898377ef8ab60203af71682ed68957392d95

Scanner detections:
35 / 68

Status:
Malware

Explanation:
The software cotains keystroke monitoring/logging capablities which may or may not be installed without the user's knowledge.

Analysis date:
11/29/2024 4:28:33 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Worm.Generic.310993
-40

Agnitum Outpost
Trojan.VBGent.Gen.1628
7.1.1

AhnLab V3 Security
Trojan/Win32.VB
17.03.16

Avira AntiVirus
Worm/VB.argu
7.11.146.224

avast!
Win32:Trojan-gen
2014.9-170316

AVG
Unnamed.Threat
2018.0.2438

Bitdefender
Worm.Generic.310993
1.0.20.375

Bkav FE
W32.HfsAutoB
1.3.0.4959

Clam AntiVirus
Worm.Vesenlosow
0.98/18355

Dr.Web
Trojan.MulDrop3.6950
9.0.1.075

Emsisoft Anti-Malware
Worm.Generic.310993
8.17.03.16.08

ESET NOD32
Win32/VB.NZT (variant)
11.9750

Fortinet FortiGate
W32/VB.NZT!tr
3/16/2017

F-Prot
W32/VB.HU.gen
v6.4.7.1.166

F-Secure
Worm.Generic.310993
11.2017-16-03_5

G Data
Worm.Generic.310993
17.3.24

IKARUS anti.virus
Trojan.Win32.VB
t3scan.1.6.1.0

K7 AntiVirus
EmailWorm
13.177.11965

Kaspersky
Worm.Win32.WBNA
14.0.0.-1317

Malwarebytes
Worm.Agent
v2017.03.16.08

McAfee
Generic VB.ku
5600.6094

Microsoft Security Essentials
Worm:Win32/Vesenlosow.A
1.10502

MicroWorld eScan
Worm.Generic.310993
18.0.0.225

NANO AntiVirus
Trojan.Win32.Vesenlosow.bclidy
0.28.0.59608

Panda Antivirus
W32/Vobfus.GEP.worm
17.03.16.08

Qihoo 360 Security
Worm.Win32.Msmm.A
1.0.0.1015

Quick Heal
Worm.Vesenlosow.A3
3.17.14.00

Rising Antivirus
PE:Worm.Win32.Msmm.a!1075351980
23.00.65.17314

Sophos
W32/VB-FRE
4.98

Trend Micro House Call
WORM_VESENLO.SMA
7.2.75

Trend Micro
WORM_VESENLO.SMA
10.465.16

Vba32 AntiVirus
Trojan.Keylogger.1021
3.12.26.0

VIPRE Antivirus
Worm.Win32.VB.argu
28788

ViRobot
Worm.Win32.A.Vesenlosow.909312
2011.4.7.4223

Zillya! Antivirus
Worm.VB.Win32.13725
2.0.0.1775

File size:
1.1 MB (1,146,880 bytes)

Product version:
1.00

Original file name:
Game.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\admin\wins7\msmm.exe

File PE Metadata
Compilation timestamp:
7/5/2002 2:31:58 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x59B3

Entry point:
25, 88, 12, 40, 00, 68, 64, 65, 40, 00, E8, F0, FF, FF, FF, 00, 00, 40, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, CD, BD, 3A, 0E, 23, F5, 4D, 44, B6, BB, 5B, 57, E2, 83, DB, 5B, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 49, 00, 84, 50, 82, 01, 47, 61, 6D, 65, 00, 9A, FF, 00, 00, 00, 00, 00, A4, 0B, FB, 02, 00, 00, 00, 00, 88, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 03, 00, 00, 00, 71, 6D, 25, 57, 4D, 96, F6, 46, 8B, D3, 26, FD, EF, 04, F1, 34, 01, 00, 00, 00, 98, 00, 00, 00, A8, 00, 00...
 
[+]

Entropy:
4.9129

Code size:
788 KB (806,912 bytes)

Remove msmm.exe - Powered by Reason Core Security