fydload_inflvto_13_v6.exe

The executable fydload_inflvto_13_v6.exe has been detected as malware by 1 anti-virus scanner. The file has been seen being downloaded from cdn.loadto.net.
MD5:
2fadc0d665ce8e7a953632311302f453

SHA-1:
da815c3e2ff850074fc8c1b5c0c6c7bbecfa0da2

SHA-256:
7e9fe8d876674074f406eb21fcb64825be7f587e318baf60821a3195fc76eb24

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/24/2024 5:10:52 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
(M)
16.6.22.15

File size:
938 Bytes

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\fydload_inflvto_13_v6.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
24:kg0MDEsZLzfgVJPoJ8s/JHWSiMzHTV2rdy:d0M710VJPgb/ktw7

Entry point:
3C, 68, 74, 6D, 6C, 3E, 3C, 68, 65, 61, 64, 3E, 3C, 4D, 45, 54, 41, 20, 48, 54, 54, 50, 2D, 45, 51, 55, 49, 56, 3D, 22, 45, 78, 70, 69, 72, 65, 73, 22, 20, 43, 4F, 4E, 54, 45, 4E, 54, 3D, 22, 2D, 31, 22, 3E, 3C, 4D, 45, 54, 41, 20, 48, 54, 54, 50, 2D, 45, 51, 55, 49, 56, 3D, 22, 50, 72, 61, 67, 6D, 61, 22, 20, 43, 4F, 4E, 54, 45, 4E, 54, 3D, 22, 6E, 6F, 2D, 63, 61, 63, 68, 65, 22, 3E, 3C, 4D, 45, 54, 41, 20, 48, 54, 54, 50, 2D, 45, 51, 55, 49, 56, 3D, 22, 43, 61, 63, 68, 65, 2D, 43, 6F, 6E, 74, 72, 6F, 6C...
 
[+]

Entropy:
5.3445

The file fydload_inflvto_13_v6.exe has been seen being distributed by the following URL.

Remove fydload_inflvto_13_v6.exe - Powered by Reason Core Security