BlockerTrainer v1.3.exe

BlockerTrainer v1.3

This is a setup program which is used to install the application. The file has been seen being downloaded from www109.zippyshare.com.
Product:
BlockerTrainer v1.3

Version:
1.0.0.0

MD5:
03c335451c025964e5e22c1531e049be

SHA-1:
e9a532272d301177f015f71a0599c80843080e9f

SHA-256:
6c22a6210d15c6bb782ae91e19794886941be331c1eb8a2f681f382afff1eaa7

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
1/12/2025 9:24:19 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
MSIL/Kryptik.EDV trojan
8.0.319.0

File size:
4 MB (4,227,584 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
BlockerTrainer v1.3.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\blockertrainer v1.3.exe

File PE Metadata
Compilation timestamp:
7/4/2016 3:53:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
98304:NIw/RaPGgN4YdLrVjjjvpR7wjiCIwj7CohtAXNQ+n:Cw2d4YdLrzRwjiCIwPCjX9

Entry address:
0x96FE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9992

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
30 KB (30,720 bytes)

The file BlockerTrainer v1.3.exe has been seen being distributed by the following URL.

Scan BlockerTrainer v1.3.exe - Powered by Reason Core Security