não confirmado 385818.crdownload

YDtwlqfn

Kapa

The file não confirmado 385818.crdownload has been detected as malware by 37 anti-virus scanners.
Publisher:
Kapa  (signed and verified)

Product:
YDtwlqfn

Version:
2.2.3.2

MD5:
2773d04f78218200c9cfeae2411318c1

SHA-1:
69e09117e5cf64bec36f032dd3dca09faf76bde3

SHA-256:
23f8aac595790368e51ff46b774fd9ca0f45909a13c8de846ce193604ce3083f

Scanner detections:
37 / 68

Status:
Malware

Analysis date:
11/24/2024 8:57:11 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.2300354
222

Agnitum Outpost
Trojan.Kryptik
7.1.1

AhnLab V3 Security
Trojan/Win32.MSIL
2016.01.20

Avira AntiVirus
TR/Injector.999952
8.3.2.4

Arcabit
Trojan.Generic.D2319C2
1.0.0.646

avast!
Win32:Broban-AR [Trj]
2014.9-160626

AVG
MSIL7
2017.0.2700

Baidu Antivirus
Trojan.MSIL.Kryptik
4.0.3.16626

Bitdefender
Trojan.GenericKD.2300354
1.0.20.890

Bkav FE
W32.Clodf01.Trojan
1.3.0.7400

Comodo Security
UnclassifiedMalware
23991

Dr.Web
Trojan.DownLoader13.1797
9.0.1.0178

Emsisoft Anti-Malware
Trojan.GenericKD.2300354
8.16.06.26.09

ESET NOD32
MSIL/Kryptik.BRU (variant)
10.12895

Fortinet FortiGate
W32/BYEM!tr
6/26/2016

F-Secure
Trojan.GenericKD.2300354
11.2016-26-06_1

G Data
Trojan.GenericKD.2300354
16.6.25

IKARUS anti.virus
Trojan.MSIL.Crypt
t3scan.1.9.5.0

K7 AntiVirus
Trojan
13.212.18474

Kaspersky
Trojan.MSIL.Kryptik
14.0.0.-4

Malwarebytes
Trojan.Stealer.DHA
v2016.06.26.09

McAfee
RDN/Generic.dx!dqd
5600.6356

Microsoft Security Essentials
Trojan:Win32/Skeeyah.A!bit
1.1.12400.0

MicroWorld eScan
Trojan.GenericKD.2300354
17.0.0.534

NANO AntiVirus
Trojan.Win32.Kryptik.dqtdmj
1.0.14.5380

nProtect
Trojan.GenericKD.2300354
16.01.19.01

Panda Antivirus
Trj/CI.A
16.06.26.09

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1077

Quick Heal
Trojan.MSI.r3
6.16.14.00

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
23.00.65.16624

Sophos
Mal/Generic-S
4.98

Trend Micro House Call
TROJ_BROBAN.LOD
7.2.178

Trend Micro
TROJ_BROBAN.LOD
10.465.26

Vba32 AntiVirus
Trojan.MSIL.Kryptik
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
46626

ViRobot
Trojan.Win32.Z.Kryptik.999952[h]
2014.3.20.0

Zillya! Antivirus
Trojan.Kryptik.Win32.704640
2.0.0.2619

File size:
976.5 KB (999,952 bytes)

Product version:
2.2.3.2

Copyright:
Copyright YDtwlqfn © 2015

Original file name:
YDtwlqfn.exe

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\não confirmado 385818.crdownload

Digital Signature
Signed by:

Authority:
getaCert - www.getacert.com

Valid from:
4/12/2015 9:19:44 AM

Valid to:
6/11/2015 9:19:44 AM

Subject:
E=support@msdkk.com, CN=Wonderwall, OU=Deilm, O=Kapa, L=Caimen, S=Ilsend, C=US

Issuer:
O=getaCert - www.getacert.com, L=Seattle, S=Washington, C=US

Serial number:
0E8E

File PE Metadata
Compilation timestamp:
4/15/2015 12:53:40 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:YJOECQl5CiLWxbrJIA7aJ5GlQ19pgURqzdl117pDuQwbOTfEGWqcFyPXRmEiyMyE:Gxd5BCbqJWlmH0JsQhEIcIPzXW9

Entry address:
0xD9EEE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
864 KB (884,736 bytes)

Remove não confirmado 385818.crdownload - Powered by Reason Core Security