hack imortal v2 by pxkill.exe

The application hack imortal v2 by pxkill.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. The file has been seen being downloaded from fs03n5.sendspace.com and multiple other hosts.
MD5:
91657c228fbc4379fc6c437ae3ad60aa

SHA-1:
554649d98e87ace3f8116d60fb1632944b444427

SHA-256:
5e49193aae07c5dc3e8f3b59ed889efe913e7c3b6ed1327b33002bfff5a67200

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 1:55:40 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Riskware.Trainer.Meta (L)
16.1.22.20

File size:
3.8 MB (4,020,736 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\hack imortal v2 by pxkill.exe

File PE Metadata
Compilation timestamp:
6/28/2013 11:45:44 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:x2mnZPyZXI92Fo+q8XB2JSDc37VD+CAa1UMBTwuKG7EPJwHbFpuVfVqe4oKN:xNC49aq8XB28QhKi1UM7YJwDyfIe4Z

Entry address:
0x15EB

Entry point:
E8, 1C, 1B, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 56, 8B, 75, 0C, 56, E8, AC, 27, 00, 00, 89, 45, 0C, 8B, 46, 0C, 59, A8, 82, 75, 17, E8, 6A, 03, 00, 00, C7, 00, 09, 00, 00, 00, 83, 4E, 0C, 20, 83, C8, FF, E9, 2F, 01, 00, 00, A8, 40, 74, 0D, E8, 4F, 03, 00, 00, C7, 00, 22, 00, 00, 00, EB, E3, 53, 33, DB, A8, 01, 74, 16, 89, 5E, 04, A8, 10, 0F, 84, 87, 00, 00, 00, 8B, 4E, 08, 83, E0, FE, 89, 0E, 89, 46, 0C, 8B, 46, 0C, 83, E0, EF, 83, C8, 02, 89, 46, 0C, 89, 5E, 04, 89, 5D, FC, A9, 0C, 01, 00...
 
[+]

Code size:
35.5 KB (36,352 bytes)

The file hack imortal v2 by pxkill.exe has been seen being distributed by the following 16 URLs.

https://fs03n5.sendspace.com/dl/f9e92a311ae77af2025e43b8a399c429/581e779d2f538b0e/.../Hack Imortal V2 BY PXKILL.EXE

https://fs03n1.sendspace.com/dl/8a9177d092e3a653a77fc1d896ae1272/5814908e5f2934ad/.../Hack Imortal V2 BY PXKILL.EXE

https://fs03n3.sendspace.com/dl/54d0a6c66f50c28653cead169d767dcc/584ca9370bd6f5f4/.../Hack Imortal V2 BY PXKILL.EXE

https://fs03n4.sendspace.com/dl/90902a4e9df1abea2f32a97e678ea077/5865512f31f3839a/.../Hack Imortal V2 BY PXKILL.EXE

https://fs03n3.sendspace.com/dl/c9e95c4b83f1fd16c5eeb25b4efc488b/586eb7f96f6544ad/.../Hack Imortal V2 BY PXKILL.EXE

https://mega.nz/temporary/.../NYJjDSYa

https://fs03n3.sendspace.com/dl/3925e8d84392690272aee91a83ae8f01/57e938226084dfdd/.../Hack Imortal V2 BY PXKILL.EXE

https://fs03n1.sendspace.com/dl/307a8c309c0572ea9e2f9977f74da3a9/57c192a22b83f903/.../Hack Imortal V2 BY PXKILL.EXE

https://fs03n5.sendspace.com/dl/78cae8e6d9b4f7c269289e4329c99dfe/57eaaf923ae083ca/.../Hack Imortal V2 BY PXKILL.EXE

https://fs03n3.sendspace.com/dl/524d49b639ce403768e838854a717091/58251c09169fc2c4/.../Hack Imortal V2 BY PXKILL.EXE

https://fs03n2.sendspace.com/dl/a6eb17279192b3da4e7afc495d79f54c/57c301fd02f79e91/.../Hack Imortal V2 BY PXKILL.EXE

https://fs03n5.sendspace.com/dl/0b02dd7ebeebeadeb1ce567143d4b0bc/576e2d6b42c5bbd7/.../Hack Imortal V2 BY PXKILL.EXE

Remove hack imortal v2 by pxkill.exe - Powered by Reason Core Security