cabal_20141211.exe.torrent.exe

MD5:
952a1a87b522416902f46166edd60689

SHA-1:
ef31eb031bd83f96ac6ddf3816d7669a150d3085

SHA-256:
e99ad6c8d716bf59a2fe4aee2e468fb8a643bc8a1ccb8d027497c3d966495dca

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/29/2024 6:09:56 PM UTC  (today)

Scan engine
Detection
Engine version

Zillya! Antivirus
Adware.CrossRider.Win32.26965
2.0.0.2496

File size:
5.5 MB (5,721,600 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
12/8/2011 3:55:56 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:icIuCt9PAQyOBdvIGwkcVHmIC2mlNUwVkhyClJciRMpMXwmILSd4evQYC/1r2/gN:hOBlIWckU9sCrcS/XwmeeIpP/8A0jw

Entry address:
0x16A8

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, 98, 30, 92, 00, A1, 8B, 30, 92, 00, C1, E0, 02, A3, 8F, 30, 92, 00, 52, 6A, 00, E8, CB, FF, 11, 00, 8B, D0, E8, 6E, 0C, 10, 00, 5A, E8, CC, 0B, 10, 00, E8, A3, 0C, 10, 00, 6A, 00, E8, D8, 20, 10, 00, 59, 68, 34, 30, 92, 00, 6A, 00, E8, A5, FF, 11, 00, A3, 93, 30, 92, 00, 6A, 00, E9, 03, 78, 10, 00, E9, 06, 21, 10, 00, 33, C0, A0, 7D, 30, 92, 00, C3, A1, 93, 30, 92, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, CC, 00, 00, 00, 0B, C9...
 
[+]

Entropy:
6.7846

Code size:
1.1 MB (1,187,840 bytes)

The file cabal_20141211.exe.torrent.exe has been seen being distributed by the following 6 URLs.

http://dl0.dler.org/67be9646c862f1c0707e53e64faea656/v/0062/.../CABAL_20141211.exe.torrent.exe

http://dl0.dler.org/c5dd0e423863f1cbd801e61ba56ef652/v/0062/.../CABAL_20141211.exe.torrent.exe

http://dl0.dler.org/992f515641416007a62663b1f5d6a838/v/0062/.../CABAL_20141211.exe.torrent.exe

Scan cabal_20141211.exe.torrent.exe - Powered by Reason Core Security