chew-wga-v0.9.exe

Chew-WGA v0.9

Anemeros Software

The application chew-wga-v0.9.exe, “The Perpetuation Endeavor” has been detected as a potentially unwanted program by 19 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download902.mediafire.com and multiple other hosts.
Publisher:
Anemeros Software

Product:
Chew-WGA v0.9

Description:
The Perpetuation Endeavor

Version:
0.9.0.0

MD5:
48efa828b21f0fb0e63ae04735b505b3

SHA-1:
5d5d91f2cec4905a760a4e413e7fca8180aa0f9e

SHA-256:
440ad7fc72e2835c3b043708be099419089acc9449dc01ac1dfa85d96cd12ac6

Scanner detections:
19 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 3:35:48 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
HackTool.WinActivator
7.1.1

Avira AntiVirus
SPR/Tool.WPAkill.C.141
7.11.154.68

avast!
Win32:PUP-gen [PUP]
2014.9-140623

Bkav FE
W32.Clod745.Trojan
1.3.0.4959

Dr.Web
Tool.Wpakill.4
9.0.1.0174

IKARUS anti.virus
HackTool.Win32.Wpakill
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.1712358

Malwarebytes
Hacktool.ChewWGA
v2014.06.23.02

McAfee
Crack-WindowsWGA.b
5600.7090

Microsoft Security Essentials
HackTool:Win32/Wpakill.C
1.10600

Norman
Suspicious_Gen2.SIJEP
11.20140623

nProtect
Trojan/W32.Agent.9458428
14.06.10.01

Panda Antivirus
Trj/CI.A
14.06.23.02

Quick Heal
HackTool.Wpakill (Not a Virus)
6.14.14.00

Rising Antivirus
PE:Trojan.Win32.Generic.12892218!310977048
23.00.65.14621

Sophos
Generic PUA FN
4.98

Trend Micro House Call
TROJ_GEN.F0C2C00JH13
7.2.174

Trend Micro
TROJ_GEN.F0C2C00JH13
10.465.23

VIPRE Antivirus
Trojan.Win32.Generic
30174

File size:
9 MB (9,458,428 bytes)

Product version:
0.9.0.0

Copyright:
Copyright (c) 2009 - Anemeros Software

Trademarks:
Chew-WGA

Original file name:
cw.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
6/23/2009 12:57:07 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:9O1vl2I4a7SdzRDymXLa4mnb0DtUog3jCUE2nKNfMILF9UBDHLSwxT1aQhS:Wt2O7Sd1ymX+4mnOU9+UCZM6kzWu12

Entry address:
0x173A6

Entry point:
55, 8B, EC, 6A, FF, 68, 90, 2C, 43, 00, 68, C4, BE, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, AC, 01, 43, 00, 33, D2, 8A, D4, 89, 15, A0, 0A, 44, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 9C, 0A, 44, 00, C1, E1, 08, 03, CA, 89, 0D, 98, 0A, 44, 00, C1, E8, 10, A3, 94, 0A, 44, 00, 6A, 01, E8, 45, 38, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, 86, 1A, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
188 KB (192,512 bytes)

The file chew-wga-v0.9.exe has been seen being distributed by the following 16 URLs.

http://download902.mediafire.com/hf8uk7v4emdg/.../Chew-WGA-v0.9.eXe

http://download1945.mediafire.com/a3hep3q5u1wg/.../Chew-WGA-v0.9.eXe

http://download1387.mediafire.com/8bk427u76n8g/.../Activador By PH HD.eXe

https://mega.nz/temporary/.../1ARDiAqb

https://mega.nz/temporary/.../cVlEhZJT

http://www.putlocker.com/get_file.php?id=A503A99CF2C0C53E&key=WyJRVFV3TTBFNU9VTkdNa013UXpVelJUb3hNemd3TXpFNU56VTFMamMwTmpFNlkyRmpabVE1TVdabU5qYzJOV1ZpTXpnM016VTJObVE0WldWaFkyRXlaV1k0T1RGaE9ESXhZZz09IiwicmVnIl0=&original=1

http://download1945.mediafire.com/pl6trea55mug/.../Activador By PH HD.eXe

Remove chew-wga-v0.9.exe - Powered by Reason Core Security