Creador de descargas directas.exe

Creador de descargas directas

Pablo Montovani

This is a setup program which is used to install the application.
Publisher:
Pablo Montovani

Product:
Creador de descargas directas

Description:
Generador de URL con de descargas directas

Version:
1.00

MD5:
8ab1876322022153188fb02fd73f72ae

SHA-1:
b3e0abf16b7185f94737fe0d62ce550cbe55a6ce

SHA-256:
8a936d0d1e2f20185ee378a0d2a8804be4f5d79286b902c95ef6443c9ac2e731

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/24/2024 4:22:54 PM UTC  (today)

Scan engine
Detection
Engine version

Quick Heal
(Suspicious) - DNAScan
1.16.14.00

Rising Antivirus
PE:Trojan.VBInject!1.64FE [F]
23.00.65.16112

File size:
20 KB (20,480 bytes)

Product version:
1.00

Copyright:
Pablo Montovani (C) - 2015

Original file name:
Creador de descargas directas.exe

File type:
Executable application (Win32 EXE)

Language:
Spanish

Common path:
C:\users\{user}\downloads\creador de descargas directas.exe

File PE Metadata
Compilation timestamp:
1/2/2015 5:43:15 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
96:/lxSdDkNLb8HfUMEwOMjcuc2ykxLVrq5rfOV70/ehpgKvoXDQMUcE2WTTIzWtoW/:/T4AwozmTVyQrxV70GkDQlf2uIWoWEL

Entry address:
0x11DC

Entry point:
68, 88, 14, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 0D, 3D, 7B, AA, F6, 00, 8A, 4C, 81, B7, 1B, 48, 47, 4B, 37, 73, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 06, 00, AD, 00, 0C, 01, 50, 72, 6F, 79, 65, 63, 74, 6F, 31, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 08, A5, 04, B1, 03, FF, 56, BF, 43, 83, 9B, 98, 49, 95, BE, 79, 56, 40, 0B, 3B, 50, 9F, 15, 4C, 4D, A6, 6A, 17, D7, 84, DD, 28, 5C, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
8 KB (8,192 bytes)

The file Creador de descargas directas.exe has been seen being distributed by the following 3 URLs.

q=http://goo.gl/gwhUsg&redir_token=xY45yN3mf02VGZ8kGqTTOZixDtx8MTQ1NTEyODc3NUAxNDU1MDQyMzc1

Scan Creador de descargas directas.exe - Powered by Reason Core Security