Quotations.exe

IxbNVd3C

dzSG2jXX

The executable Quotations.exe has been detected as malware by 19 anti-virus scanners.
Publisher:
dzSG2jXX

Product:
IxbNVd3C

Description:
m61DVu8q

Version:
99.96.69.32

MD5:
b41434f33ae4f884852d0eec6c0195c5

SHA-1:
cf372658fc71d25240af8573c37a2154dea4600e

SHA-256:
da5cd00f55bfa5c09b1b010f19662ffb1069d6c5f42522c810541f5cee4ebdec

Scanner detections:
19 / 68

Status:
Malware

Analysis date:
11/29/2024 4:39:51 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Razy.148933
-40

AhnLab V3 Security
HEUR/Fakon.apf
3.8.3.16

Avira AntiVirus
TR/Dropper.MSIL.xebgm
8.3.3.4

Arcabit
Trojan.Razy.D245C5
1.0.0.802

AVG
Luhe.Fiha.A
2018.0.2438

Baidu Antivirus
Win32.Trojan.WisdomEyes.16070401.9500
4.0.3.17316

Bitdefender
Gen:Variant.Razy.148933
1.0.20.375

Emsisoft Anti-Malware
Gen:Variant.Razy.148933
8.17.03.16.03

ESET NOD32
MSIL/Kryptik.IPB (variant)
11.15089

Fortinet FortiGate
MSIL/GenKryptik.WUZ!tr
3/16/2017

F-Secure
Gen:Variant.Razy.148933
11.2017-16-03_5

G Data
Gen:Variant.Razy.148933
17.3.A:25.11187B:25.9085

IKARUS anti.virus
Win32.SuspectCrc
0.2.1.2

Kaspersky
Trojan.MSIL.Crypt
14.0.0.-1316

McAfee
Packed-KF!B41434F33AE4
5600.6094

MicroWorld eScan
Gen:Variant.Razy.148933
18.0.0.225

Qihoo 360 Security
Win32/Trojan.b4e
1.0.0.1120

Trend Micro House Call
TROJ_GEN.R0E9H0CCE17
7.2.75

VIPRE Antivirus
Trojan.Win32.Generic.pak!cobra
56654

File size:
848 KB (868,352 bytes)

Product version:
99.96.69.32

Copyright:
ARyb8NUY

Original file name:
Quotations.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\quotations.exe

File PE Metadata
Compilation timestamp:
3/10/2017 4:53:40 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

Entry address:
0xC4CBE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.6148

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
779.5 KB (798,208 bytes)

Remove Quotations.exe - Powered by Reason Core Security