uni-android tool 3.01.exe

Uni-Android Tool

www.gsm-india.com

The executable uni-android tool 3.01.exe, “Uni-Android Tool by: Mehmood Riaz - Kishtwar - Jammu and Kashmir -INDIA” has been detected as malware by 8 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1417.mediafire.com and multiple other hosts.
Publisher:
www.gsm-india.com

Product:
Uni-Android Tool

Description:
Uni-Android Tool by: Mehmood Riaz - Kishtwar - Jammu and Kashmir -INDIA

Version:
3. 0. 0. 1

MD5:
1298d6d9f2dcc68795b3e8aa8cbd7423

SHA-1:
69037ccf418ef6ad648410031af0affa29085354

Scanner detections:
8 / 68

Status:
Malware

Analysis date:
11/5/2024 3:44:48 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.DaemonIM.Trojan
1.3.0.4959

Clam AntiVirus
Trojan.Sinowal-1876
0.98/18355

F-Prot
W32/Trojan2.NTOP
v6.4.7.1.166

IKARUS anti.virus
Backdoor.Win32.Sinowal
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.176.11684

NANO AntiVirus
Trojan.Win32.Qhost.cmphq
0.28.0.59048

Trend Micro House Call
HV_DAPATO_CI053E2C.RDXN
7.2.51

Vba32 AntiVirus
Hoax.Blocker
3.12.26.0

File size:
5.9 MB (6,214,656 bytes)

Product version:
3. 0. 0. 1

Copyright:
www.gsm-india.com

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
1/12/2011 7:08:13 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
98304:dPetYu6UA/nTEp8oNLIRR0UzygvlkBmTyACpVRGppR2nzr91dAdRDc6gQu:Qte5LEpTNLMRvJTyA0Gd2nzr91MRDc62

Entry address:
0xCB10

Entry point:
55, 8B, EC, 81, EC, B4, 03, 00, 00, 56, 6A, 00, FF, 15, 8C, 10, 41, 00, 89, 85, 8C, FE, FF, FF, C7, 85, A0, FE, FF, FF, 00, 00, 00, 00, C7, 45, F8, 01, 00, 00, 00, C7, 85, B8, FE, FF, FF, 00, 00, 00, 00, FF, 15, EC, 10, 41, 00, A3, 70, 68, 41, 00, 68, 04, 01, 00, 00, 68, B8, 6E, 41, 00, 6A, 01, 8B, 85, 8C, FE, FF, FF, 50, FF, 15, 8C, 11, 41, 00, 6A, 08, 68, 9C, 6C, 41, 00, 6A, 11, 8B, 8D, 8C, FE, FF, FF, 51, FF, 15, 8C, 11, 41, 00, 68, C8, 00, 00, 00, 8D, 95, C0, FE, FF, FF, 52, 68, 9C, 6C, 41, 00, E8, FD...
 
[+]

Entropy:
7.9942

Developed / compiled with:
Microsoft Visual C++

Code size:
63 KB (64,512 bytes)

The file uni-android tool 3.01.exe has been seen being distributed by the following 6 URLs.

http://download1417.mediafire.com/5xfy2mldacqg/.../Uni-Android Tool.exe

http://download968.mediafire.com/xrugffrb54tg/.../Uni-Android Tool.exe

http://download630.mediafire.com/27n503737k2g/.../Uni-Android Tool.exe

Remove uni-android tool 3.01.exe - Powered by Reason Core Security