dayz standalone.exe

The application dayz standalone.exe has been detected as a potentially unwanted program by 24 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from mega.nz and multiple other hosts.
MD5:
909a73557df9ce9841b39da58420fb41

SHA-1:
828c94c09aef3b28978d3261f1c708ec2f79a660

SHA-256:
e1f1998df070c02760312139d4b9d42cff37955ebf0ce1184c7aed12d71252b8

Scanner detections:
24 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 8:51:56 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Generic.1296835
515

Agnitum Outpost
Trojan.Enigma
7.1.1

Avira AntiVirus
TR/Crypt.XPACK.Gen
8.3.2.2

Arcabit
Adware.Generic.D13C9C3
1.0.0.425

avast!
Win32:Malware-gen
2014.9-150907

AVG
Win32/Blacked
2016.0.2993

Baidu Antivirus
Trojan.Win32.Enigma
4.0.3.1597

Bitdefender
Adware.Generic.1296835
1.0.20.1250

Comodo Security
UnclassifiedMalware
23106

Dr.Web
Trojan.Inject
9.0.1.0250

Emsisoft Anti-Malware
Adware.Generic.1296835
8.15.09.07.08

ESET NOD32
Win32/Packed.Enigma.AAF (variant)
9.12168

Fortinet FortiGate
PossibleThreat
9/7/2015

F-Prot
W32/S-a54b5573
v6.4.7.1.166

F-Secure
Adware.Generic.1296835
11.2015-07-09_2

G Data
Adware.Generic.1296835
15.9.25

IKARUS anti.virus
Virus.Win32.Heur
t3scan.1.9.5.0

K7 AntiVirus
Trojan
13.2017046

McAfee
Artemis!909A73557DF9
5600.6649

Microsoft Security Essentials
Trojan:Win32/Skeeyah.A!bit
1.1.12002.0

MicroWorld eScan
Adware.Generic.1296835
16.0.0.750

NANO AntiVirus
Trojan.Win32.Inject.dutego
0.30.24.3283

Trend Micro
TROJ_GEN.R08NC0DH515
10.465.07

VIPRE Antivirus
Trojan.Win32.Generic
43280

File size:
10.5 MB (11,046,912 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\dayz standalone.exe

File PE Metadata
Compilation timestamp:
6/15/2015 1:06:28 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:qm7E9wDHujcjz4Vvo+qM7jDPcn+sSgkCF7tNA:Keujcz4Vg5MPDrYrNA

Entry address:
0x19DC

Entry point:
55, 8B, EC, 83, C4, F0, B8, 00, 10, 40, 00, E8, 01, 00, 00, 00, 9A, 83, C4, 10, 8B, E5, 5D, E9, F0, 99, 3D, 00, D4, 43, 1C, 97, C3, E5, 12, D9, 06, 16, B6, 4B, 86, 80, 3A, B4, D4, 57, AA, 05, B7, 1B, 7E, 88, 5D, 47, E5, 28, 45, 6F, DA, 8D, F0, A5, 26, 8F, 88, 08, 07, 5D, CF, 23, 50, 3A, F8, B8, 5B, DC, 3C, 2B, 11, 4B, EA, 3A, 3F, 1F, 59, BA, C0, CA, 92, D9, 82, FD, DB, 42, 48, C3, 55, 1D, 55, BE, 1F, 6A, F5, B4, A0, 8D, 91, 77, 9E, 18, 09, 18, 12, 4B, 65, 12, 57, D8, DE, A1, 8E, B4, ED, 22, EE, D3, D3, D4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
36.5 KB (37,376 bytes)

The file dayz standalone.exe has been seen being distributed by the following 3 URLs.

Remove dayz standalone.exe - Powered by Reason Core Security