Habboz Hack.exe

Habboz Hack

The executable Habboz Hack.exe has been detected as malware by 24 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1325.mediafire.com.
Product:
Habboz Hack

Version:
1.0.0.0

MD5:
31b34f1ca9feccd465db297cff94f5f1

SHA-1:
f0fb55a9eaed2c31d7f98d610a7cfd8f906d570f

SHA-256:
0b36f8a01bc3f5792bc7b0d3db5ff9fbdffb528b00487c57535bd1f091982fab

Scanner detections:
24 / 68

Status:
Malware

Analysis date:
11/5/2024 4:47:41 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.11911161
199

Agnitum Outpost
Trojan.PWS.Agent
7.1.1

Avira AntiVirus
TR/Spy.A.8036
8.3.2.4

Arcabit
Trojan.Generic.DB5BFF9
1.0.0.637

avast!
Win32:Malware-gen
2014.9-160719

AVG
PSW.MSIL
2017.0.2677

Baidu Antivirus
Trojan.MSIL.Agent
4.0.3.16719

Bitdefender
Trojan.Generic.11911161
1.0.20.1005

Bkav FE
W32.Clod3d4.Trojan
1.3.0.7400

Comodo Security
UnclassifiedMalware
23898

Emsisoft Anti-Malware
Trojan.Generic.11911161
8.16.07.19.07

ESET NOD32
MSIL/PSW.Agent.ONZ (variant)
10.12804

Fortinet FortiGate
MSIL/Agent.NRZ!tr.pws
7/19/2016

F-Secure
Trojan.Generic.11911161
11.2016-19-07_3

G Data
Trojan.Generic.11911161
16.7.25

IKARUS anti.virus
Trojan.MSIL.PSW
t3scan.1.9.5.0

K7 AntiVirus
Password-Stealer
13.212.18299

McAfee
Artemis!31B34F1CA9FE
5600.6333

MicroWorld eScan
Trojan.Generic.11911161
17.0.0.603

nProtect
Trojan.Generic.11911161
15.12.31.01

Panda Antivirus
Trj/Sharik.B
16.07.19.07

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
23.00.65.16717

Sophos
Mal/Generic-S
4.98

VIPRE Antivirus
Trojan.Win32.Generic
46220

File size:
990.5 KB (1,014,272 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2014

Original file name:
Habboz Hack.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\habboz hack.exe

File PE Metadata
Compilation timestamp:
8/10/2014 6:52:13 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:1j/MiuNdAayAbCMKrPxVhVxIU2LsXR/tBkRJ01/egU8:1bMiaVC7XJoLsXRrkR2e

Entry address:
0xF876E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
986 KB (1,009,664 bytes)

The file Habboz Hack.exe has been seen being distributed by the following URL.

Remove Habboz Hack.exe - Powered by Reason Core Security