fifa 8.exe

Source

Abronsius

The executable fifa 8.exe has been detected as malware by 11 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from dc98.2shared.com.
Publisher:
Abronsius

Product:
Source

Description:
Source System

Version:
2.00

MD5:
2acffda03da4201ddae31979b37cd6ec

SHA-1:
0fbc8d090f99632eb07d56830d80081026870509

SHA-256:
70a685c9febc986669b8a83d8cb2f24b058f18553ce662300d27be2a865d69cd

Scanner detections:
11 / 68

Status:
Malware

Analysis date:
11/27/2024 4:31:39 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.VBGent.Gen.365
7.1.1

AhnLab V3 Security
Trojan/Win32.Refroso
2014.09.25

Avira AntiVirus
TR/Spy.Gen
7.11.174.118

AVG
Win32/Heur
2017.0.2815

Baidu Antivirus
Worm.Win32.WBNA
4.0.3.1634

Comodo Security
UnclassifiedMalware
19620

IKARUS anti.virus
Trojan-Spy.Win32.VB
t3scan.1.7.8.0

Kaspersky
Worm.Win32.WBNA
14.0.0.568

Malwarebytes
Trojan.Agent
v2016.03.04.08

Qihoo 360 Security
Malware.QVM19.Gen
1.0.0.1015

Rising Antivirus
PE:Trojan.Vbex!1.99F5
23.00.65.16302

File size:
104 KB (106,496 bytes)

Product version:
2.00

Copyright:
Abronsius

Trademarks:
Abronsius

Original file name:
Source.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\fifa 8.exe

File PE Metadata
Compilation timestamp:
4/10/2011 2:36:56 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:TL0iO60zY0y5NTm6/E9eWO2+FPv/D6bibT2uRQEYEqI:HHFl5m60cT2uRQEYBI

Entry address:
0x11D0

Entry point:
FF, CF, EB, 08, B8, 4D, 02, E9, F9, 0F, AF, C6, 81, F3, 03, 3A, 00, 00, 84, CA, 0F, B6, F6, F7, C7, 38, 3E, 7A, 3A, E8, 53, 00, 00, 00, 74, 0B, C7, C3, 29, 43, DD, 31, 89, EE, 0F, B6, F1, 71, 02, 0F, CE, 80, EC, B2, 3B, CD, EB, 02, 24, 5A, 00, C5, B2, 14, 85, F6, 68, BC, 69, 00, 00, FE, CF, 5B, 04, 93, 81, EB, EE, 6A, 00, 00, 0F, AF, C2, 8D, 33, 81, C6, 32, 01, 00, 00, 46, 69, DA, A1, 89, B3, C3, 3B, EF, 75, 04, FF, CF, 23, C5, 40, 81, FE, 16, 01, 00, 00, 72, E8, 8A, D8, 74, 08, 86, C2, 4A, 0F, BF, D6, 84...
 
[+]

Code size:
88 KB (90,112 bytes)

The file fifa 8.exe has been seen being distributed by the following URL.

Remove fifa 8.exe - Powered by Reason Core Security