FIFA_15_Demo.exe

WindowsApplication1

Microsoft

This is a setup program which is used to install the application. The file has been seen being downloaded from cluster007.ovh.net and multiple other hosts.
Publisher:
Microsoft

Product:
WindowsApplication1

Version:
1.0.0.0

MD5:
bbb3b6e1784420bce6b19cd4fddda5cf

SHA-1:
edb0596f77d56a241d034cc9d87b23a5fbc2f1d3

SHA-256:
0cb81b138072d580b5a9f16efe6e810d102b1111e97ed361ff2ac8c17e58dac3

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/30/2024 10:59:38 AM UTC  (today)

Scan engine
Detection
Engine version

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.7.8.0

K7 AntiVirus
Riskware
13.183.13345

Trend Micro House Call
TROJ_GEN.R047H09GO14
7.2.265

VIPRE Antivirus
Trojan.Win32.Generic
33040

File size:
6 MB (6,314,496 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2014

Original file name:
FIFA_15_Demo.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\fifa_15_demo.exe

File PE Metadata
Compilation timestamp:
7/19/2014 3:43:27 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
196608:3LGLeLq5nHyNIlfMl8p2tE6Lc9B9wRQ5eOltjtb3eYepL:3LGLeLCS+S5dLc9B9wu5tjtb3kpL

Entry address:
0x5EE3AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 3F, CD, C9, 53, 00, 00, 00, 00, 02, 00, 00, 00, 81, 00, 00, 00, 1C, 00, 5F, 00, 1C, C8, 5E, 00, 52, 53, 44, 53, 50, EC, 0E, 3F, 11, 03, 6D, 4D, A6, BD, C8, AB, DA, A5...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
5.9 MB (6,210,560 bytes)

The file FIFA_15_Demo.exe has been seen being distributed by the following 3 URLs.

Scan FIFA_15_Demo.exe - Powered by Reason Core Security