dota2treecutter8clicks.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www116.zippyshare.com.
MD5:
7f80d05340d5770e247b14b0fcc4f608

SHA-1:
f3e84785c59e4a0e6d39747f9891347f22aef8cf

SHA-256:
9293e008413f8eb9bab515bba91dd9a4a72ceae59606091ba1cf0c7cab74e00b

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/25/2024 5:16:51 AM UTC  (today)

Scan engine
Detection
Engine version

Qihoo 360 Security
HEUR/QVM10.1.0000.Malware.Gen
1.0.0.1120

File size:
165 KB (168,960 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
5/20/2016 4:01:21 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
12.0

CTPH (ssdeep):
3072:0bo/QDjKUTQcJHOqnWKIPi6FqkZW+9ncvN+Noozuusu70jX:0boIDGUTQ6OqWK56Fqo9nU9lu4jX

Entry address:
0x7820

Entry point:
E8, C9, 92, 00, 00, E9, 7B, FE, FF, FF, E8, E9, 6F, 00, 00, 8B, D0, 8B, 42, 6C, 3B, 05, F4, 78, 42, 00, 74, 10, 8B, 0D, B0, 79, 42, 00, 85, 4A, 70, 75, 05, E8, 90, 6D, 00, 00, 8B, 40, 04, C3, E8, C3, 6F, 00, 00, 8B, D0, 8B, 42, 6C, 3B, 05, F4, 78, 42, 00, 74, 10, 8B, 0D, B0, 79, 42, 00, 85, 4A, 70, 75, 05, E8, 6A, 6D, 00, 00, 05, A0, 00, 00, 00, C3, E8, 9B, 6F, 00, 00, 8B, D0, 8B, 42, 6C, 3B, 05, F4, 78, 42, 00, 74, 10, 8B, 0D, B0, 79, 42, 00, 85, 4A, 70, 75, 05, E8, 42, 6D, 00, 00, 8B, 40, 74, C3, 55, 8B...
 
[+]

Code size:
115 KB (117,760 bytes)

The file dota2treecutter8clicks.exe has been seen being distributed by the following URL.

Scan dota2treecutter8clicks.exe - Powered by Reason Core Security