cash generator ca v2.01.exe

CASH GRATUITO CA 2

The executable cash generator ca v2.01.exe has been detected as malware by 18 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1844.mediafire.com and multiple other hosts.
Product:
CASH GRATUITO CA 2

Version:
1.0.0.0

MD5:
c1523051979afb47b86d32ca50ae0958

SHA-1:
06aa039da2f2e42c8aa75df7d25ab3a555300083

SHA-256:
bd3c821a0113b31430d832984c79cef81f87fa1778b6e448f85bcc427ba5bc2f

Scanner detections:
18 / 68

Status:
Malware

Analysis date:
11/23/2024 11:30:09 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.16442762
283

Avira AntiVirus
TR/Spy.Aconstel.ylgw
8.3.3.4

Arcabit
Trojan.Generic.DFAE58A
1.0.0.672

Baidu Antivirus
MSIL.Trojan.Agent
4.0.3.16427

Bitdefender
Trojan.Generic.16442762
1.0.20.590

Emsisoft Anti-Malware
Trojan.Generic.16442762
8.16.04.27.12

ESET NOD32
MSIL/PSW.Agent.ONZ (variant)
10.13397

F-Secure
Trojan.Generic.16442762
11.2016-27-04_4

G Data
Trojan.Generic.16442762
16.4.25

IKARUS anti.virus
Trojan.MSIL.PSW
t3scan.2.0.9.0

K7 AntiVirus
Password-Stealer
13.223.19433

McAfee
Artemis!C1523051979A
5600.6417

Microsoft Security Essentials
TrojanSpy:MSIL/Aconstel.A
1.1.12706.0

MicroWorld eScan
Trojan.Generic.16442762
17.0.0.354

Panda Antivirus
Trj/Sharik.B
16.04.27.12

Qihoo 360 Security
HEUR/QVM03.0.0000.Malware.Gen
1.0.0.1120

Sophos
Mal/Generic-S
4.98

VIPRE Antivirus
Trojan.Win32.Generic
48946

File size:
271.5 KB (278,016 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
CASH GRATUITO CA 2.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\cash generator ca v2.01.exe

File PE Metadata
Compilation timestamp:
4/22/2016 4:40:12 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:kdLupeJImGnovWTZJOz82nHcQUwC0IpECreEUGAtg1qLF6akKmw2Fq4BM:kdme6hnou96HzUgIpECCEUjCKmw2F

Entry address:
0x4490E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
266.5 KB (272,896 bytes)

The file cash generator ca v2.01.exe has been seen being distributed by the following 2 URLs.

Remove cash generator ca v2.01.exe - Powered by Reason Core Security