notification_wjp19400967-smq.zip

The file notification_wjp19400967-smq.zip has been detected as a potentially unwanted program by 26 anti-malware scanners. The file has been seen being downloaded from storage.eu1.hightail.com.
MD5:
8872704f27858e5d4d85b43bba0c1d79

SHA-1:
f934c1a1c222ad1126226ba2e89209408c309f86

SHA-256:
32206f81adb7bf0645369d44543f634164b18b5e08cc64e25222a84c610f8bd8

Scanner detections:
26 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 8:47:25 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.2266331
6217456

avast!
Win32:Malware-gen
2014.9-150407

AVG
Crypt4
2016.0.3147

Baidu Antivirus
Adware.Win32.iBryte
4.0.3.1547

Bitdefender
Trojan.GenericKD.2266331
1.0.20.485

Emsisoft Anti-Malware
Trojan.GenericKD.2266331
9.0.0.4799

ESET NOD32
Win32/Kryptik.DDUJ (variant)
9.11418

Fortinet FortiGate
W32/UPATRE.M!tr
4/7/2015

F-Prot
W32/Trojan3.OPI (exact, not disinfectable)
4.6.5.141

F-Secure
Trojan-Downloader:W32/Dalexis.B
5.13.68

G Data
Trojan.GenericKD.2266331
15.4.25

IKARUS anti.virus
Trojan-Downloader.Win32.Waski
t3scan.1.8.9.0

K7 AntiVirus
Trojan
13.202.15469

Kaspersky
Trojan-Downloader.Win32.Upatre
15.0.0.543

Malwarebytes
Trojan.Email.FakeDoc
v2015.04.07.06

McAfee
Trojan.Artemis!3DBC0E917C81
16.8.708.2

Microsoft Security Essentials
Threat.Undefined
1.195.2073.0

MicroWorld eScan
Trojan.GenericKD.2266331
16.0.0.291

Norman
Kryptik.CFBF
11.20150407

Panda Antivirus
Trj/Genetic.gen
15.04.07.06

Qihoo 360 Security
HEUR/QVM19.1.Malware.Gen
1.0.0.1015

Quick Heal
TrojanDownloader.Upatre.r5
4.15.14.00

Sophos
Virus 'Troj/Invo-Zip'
5.12

Trend Micro House Call
Suspicious_GEN.F47V0401
7.2.97

Trend Micro
TROJ_UPATRE.SMNC
10.465.07

VIPRE Antivirus
Trojan.Win32.Generic
39002

File size:
14.5 KB (14,895 bytes)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\notification_wjp19400967-smq.zip

The file notification_wjp19400967-smq.zip has been seen being distributed by the following URL.

Remove notification_wjp19400967-smq.zip - Powered by Reason Core Security