AlteredTeam PayPal Hacked.exe

AlteredTeam PayPal Hacked

The executable AlteredTeam PayPal Hacked.exe has been detected as malware by 6 anti-virus scanners. The file has been seen being downloaded from download630.mediafire.com.
Product:
AlteredTeam PayPal Hacked

Version:
1.1.0.1

MD5:
d5504eb4166c4e0992fac30c37340733

SHA-1:
e1ee2890323e3fc547025f8f5f15c8f0255503eb

SHA-256:
3fd3c440750a6616b8285b0be832d5b89ad34c9ad365e3732132a0487622d1ce

Scanner detections:
6 / 68

Status:
Malware

Analysis date:
12/26/2024 6:17:59 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Spy.A.7108
7.11.199.92

Fortinet FortiGate
MSIL/Agent.OFU!tr
1/9/2015

IKARUS anti.virus
Trojan.Spy
t3scan.1.8.5.0

McAfee
Artemis!D5504EB4166C
5600.6890

Norman
Suspicious_Gen4.HKWEY
11.20150109

Panda Antivirus
Trj/Sharik.B
15.01.09.10

File size:
319 KB (326,656 bytes)

Product version:
1.1.0.1

Copyright:
AlteredTeam Copyright © 2014

Original file name:
AlteredTeam PayPal Hacked.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\alteredteam paypal hacked.exe

File PE Metadata
Compilation timestamp:
9/9/2014 11:31:06 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:zTvwafLvQ9XMzXQvQxHIccXl3ippXJI0FNducGGGGGGGGGGGGGGGGGGGGGGGGGGC:zD7fk8bMQxoXl3ippi0FNdui

Entry address:
0x4C8AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.2602

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
298.5 KB (305,664 bytes)

The file AlteredTeam PayPal Hacked.exe has been seen being distributed by the following URL.

Remove AlteredTeam PayPal Hacked.exe - Powered by Reason Core Security