Author Topic: Does avast detect? Yep it does as PUP!  (Read 1798 times)

0 Members and 2 Guests are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34054
  • malware fighter
Does avast detect? Yep it does as PUP!
« on: July 19, 2016, 07:13:29 PM »
Saw it here: bio4trn.rar
Date processed: July 20, 2016, midnight
Source: URL Upload
Original URL: hxxp://patch2.99ddd.com/newpatch22/bio4trn.rar
MD5: b96a71427dca81c7d6656d8c2a07f403
SHA1: 637d30d9b06f8e2baf17ae75526e54cec7f3cfc9
Sha256: e2b572302e50ace51847b877fc5b760ecbd23c683bb1ef314cec334b9b47707c
Sha512: 65793caac75d8c425f72ec99fbf1898ce49f5195e06d62f5f6e802a4f3fbbbfa582b73beb831d8a88311b80aea14b6b75e94b1653344caeae0319abf37149994

So fed it at Minotaur: http://minotr.net/detail?md5=b96a71427dca81c7d6656d8c2a07f403
and compared here: http://v.virscan.org/TR/Agent.1162453.html  &  http://v.virscan.org/language/nl/TSPY_HATKEYS.C/9.html

Avast detects as Avast   Win32:HotKeysHook-I [PUP] here: https://www.virustotal.com/en-gb/file/e2b572302e50ace51847b877fc5b760ecbd23c683bb1ef314cec334b9b47707c/analysis/
which is being confirmed here: http://support.clean-mx.com/clean-mx/md5.php?Rising=Trojan.Win32.Generic.128636A4

pol
« Last Edit: June 15, 2017, 10:35:46 AM by moroni »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!