oppics.dont.exe

Windows Live

The executable oppics.dont.exe has been detected as malware by 21 anti-virus scanners. The file has been seen being downloaded from 55807193-134732981817953451.preview.editmysite.com.
Product:
Windows Live

Version:
1.0.0.0

MD5:
186329e0d99a57e3917d07de118837b3

SHA-1:
f4fae3732156e8a7e8b69aca40fd892020ca9955

SHA-256:
92962060a85af05d33df83cf4080b3e30646ca8f94f057616e3a36fb5be8bd1d

Scanner detections:
21 / 68

Status:
Malware

Analysis date:
2/25/2025 2:22:44 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.3000924
375

Avira AntiVirus
TR/AD.Bladabindi.Y.2455
8.3.2.4

Arcabit
Trojan.Generic.D2DCA5C
1.0.0.646

AVG
BackDoor.Generic19
2017.0.2853

Bitdefender
Trojan.GenericKD.3000924
1.0.20.130

Emsisoft Anti-Malware
Trojan.GenericKD.3000924
8.16.01.26.12

F-Secure
Trojan.GenericKD.3000924
11.2016-26-01_3

G Data
Trojan.GenericKD.3000924
16.1.25

K7 AntiVirus
Riskware
13.212.18523

Kaspersky
Trojan.MSIL.Disfa
14.0.0.760

McAfee
RDN/Generic BackDoor
5600.6509

Microsoft Security Essentials
Backdoor:MSIL/Bladabindi
1.1.12400.0

MicroWorld eScan
Trojan.GenericKD.3000924
17.0.0.78

nProtect
Trojan.GenericKD.3000924
16.01.25.01

Panda Antivirus
Trj/CI.A
16.01.26.12

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1077

Quick Heal
Backdoor.BLA.r3
1.16.14.00

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
23.00.65.16124

Sophos
Mal/Generic-S
4.98

Trend Micro
TROJ_GEN.R00JC0DAP16
10.465.26

VIPRE Antivirus
Trojan.Win32.Generic
46748

File size:
209 KB (214,016 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
Windows Live.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\oppics.dont.exe

File PE Metadata
Compilation timestamp:
12/29/2015 10:08:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:GwPLUXchRwxwtgoBrQ7kKafDZVfbkGYQRnrewpV:G6Ycs0fDZdbkO

Entry address:
0x35952

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4638

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
206.5 KB (211,456 bytes)

The file oppics.dont.exe has been seen being distributed by the following URL.

Remove oppics.dont.exe - Powered by Reason Core Security