ApkInstaller.exe

ApkInstaller

apkinstaller.com

The executable ApkInstaller.exe, “APK Installer for PC” has been detected as malware by 9 anti-virus scanners. Infected by the Parite virus, a polymorphic file infecting virus that infects all portable EXE and SCR files found on local and shared network drives. The file has been seen being downloaded from apkinstaller.com.
Publisher:
apkinstaller.com

Product:
ApkInstaller

Description:
APK Installer for PC

Version:
3, 5, 0, 0

MD5:
9890276ac977542b61388b1ca6d8f0c1

SHA-1:
22f6da7f7efca8c4ad6e024aa64ff07eb88a63b2

SHA-256:
9709b5dc5c9b6a273ec22a5edfcb4f2d8faadd9d4388c0dc57cec0b536492645

Scanner detections:
9 / 68

Status:
File is infected by a Virus

Explanation:
The file is infected by a polymorphic file infector virus.

Analysis date:
12/27/2024 3:21:54 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Parite
160518-2

AVG
Win32/Parite
2015.0.4604

Dr.Web
Win32.Parite.2
9.0.1.05190

Emsisoft Anti-Malware
Win32.Parite
11.5.0.6191

ESET NOD32
Win32/Parite.B virus
8.0.319.0

F-Prot
W32/Parite.B
4.6.5.141

McAfee
Virus.W32/Pate.b
18.0.204.0

Microsoft Security Essentials
Threat.Undefined
1.223.2667.0

Norman
Win32.Parite.B
28.05.2016 15:32:18

File size:
2.9 MB (3,085,784 bytes)

Product version:
3, 5, 0, 0

Copyright:
Copyright (C) 2009-2014

Original file name:
ApkInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\apkinstaller.exe

File PE Metadata
Compilation timestamp:
3/3/2014 12:52:43 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:oy6KWdAxxpVOtBsYkFh0nSTMDd+8lPktqPGaTJmkZ53xX3ZcvlJATJx1IMlcJrK:o0WaxpVOtBsYkFh07Q8lPQPkZhB3Zws/

Entry address:
0x2C6000

Entry point:
90, 90, B8, 03, 97, 84, 00, 90, 68, 1E, 60, 6C, 00, 5A, 90, 90, BE, 98, 05, 00, 00, 31, 04, 32, 90, 4E, 83, EE, 03, 90, 90, 75, F4, 90, EB, EA, 85, 00, 03, 97, 84, 00, 03, 97, C4, 00, DC, F9, 81, 00, 03, F7, A8, 00, DB, F2, A8, 00, 03, 27, 86, 00, FC, 68, 7B, FF, 67, B7, C2, 00, 77, 8C, C3, 00, 65, 8C, C3, 00, BB, 9A, 83, 00, 71, 8C, 83, 00, 67, 8C, 83, 00, 67, B7, 82, 00, 71, 8C, 83, 00, 67, 8C, 83, 00, 03, 97, 84, 00, 03, 97, 84, 00, 03, 97, 84, 00, 03, 97, 84, 00, 57, B6, C2, 00, 03, 97, 84, 00, 03, 97...
 
[+]

Entropy:
6.9472

Code size:
388 KB (397,312 bytes)

The file ApkInstaller.exe has been seen being distributed by the following URL.

Remove ApkInstaller.exe - Powered by Reason Core Security