Assassins Creed Rogue.exe

Assassins Creed Rogue

The executable Assassins Creed Rogue.exe has been detected as malware by 3 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1477.mediafire.com and multiple other hosts.
Product:
Assassins Creed Rogue

Description:
xKrewella

Version:
1.0.0.0

MD5:
9d386746acb04cb4f793d8aaebfea0dc

SHA-1:
78757005d0d3863fb9d473e7637ce30a87a68dfc

SHA-256:
67749c7884a0e891aa29344c7fa62eb9a8e18882ec6ba7f16e840053dac59851

Scanner detections:
3 / 68

Status:
Malware

Analysis date:
11/4/2024 5:08:49 PM UTC  (today)

Scan engine
Detection
Engine version

F-Secure
Suspicious:W32/Malware.78757005d0!Online
5.14.151

Kaspersky
UDS:DangerousObject.Multi.Generic
14.0.0.1560

ViRobot
Trojan.Win32.S.Agent.182272.BM[h]
2014.3.20.0

File size:
178 KB (182,272 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2014

Original file name:
Assassins Creed Rogue.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\assassins creed rogue.exe

File PE Metadata
Compilation timestamp:
11/16/2014 3:20:29 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:anaMIJO3bY2HRDhKPaKC4kQ2HiKn5dCNKhYGih0gzjJVvL8YHjYDN2yTmZBnOZqH:kXVHRoPGLHitKhYP1zDbjYcKZ

Entry address:
0x25B5E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
143 KB (146,432 bytes)

The file Assassins Creed Rogue.exe has been seen being distributed by the following 3 URLs.

http://download1477.mediafire.com/q7msmbarczpg/.../Assassins Creed Rogue.exe

http://download997.mediafire.com/apf5x8bfar2g/.../Assassins Creed Rogue.exe

Remove Assassins Creed Rogue.exe - Powered by Reason Core Security