Hacker MiniMundos.exe

Hacker MiniMundos

The executable Hacker MiniMundos.exe has been detected as malware by 28 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from dc375.4shared.com.
Product:
Hacker MiniMundos

Version:
1.0.0.0

MD5:
aafacf44fa1411c52ff16d3d1743ae62

SHA-1:
935c85d6be371385527486f3c0aa0306bee4492f

SHA-256:
9a6c589e994225d97079332203147905ebc56a083ac8c829585a29ecb444be24

Scanner detections:
28 / 68

Status:
Malware

Analysis date:
11/5/2024 6:28:05 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.3017400
349

Agnitum Outpost
Trojan.PWS.Agent
7.1.1

Avira AntiVirus
TR/Spy.A.20582
8.3.2.4

Arcabit
Trojan.Generic.D2E0AB8
1.0.0.653

avast!
Win32:Malware-gen
2014.9-160220

AVG
PSW.MSIL
2017.0.2827

Baidu Antivirus
Trojan.MSIL.Agent
4.0.3.16220

Bitdefender
Trojan.GenericKD.3017400
1.0.20.255

Comodo Security
UnclassifiedMalware
24120

Emsisoft Anti-Malware
Trojan.GenericKD.3017400
8.16.02.20.11

ESET NOD32
MSIL/PSW.Agent.NRZ (variant)
10.12991

Fortinet FortiGate
MSIL/Agent.NRZ!tr.pws
2/20/2016

F-Secure
Trojan.GenericKD.3017400
11.2016-20-02_7

G Data
Trojan.GenericKD.3017400
16.2.25

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.2.0.6.0

K7 AntiVirus
Password-Stealer
13.213.18666

Kaspersky
UDS:DangerousObject.Multi.Generic
14.0.0.630

McAfee
RDN/Generic PWS.y
5600.6483

Microsoft Security Essentials
TrojanSpy:MSIL/Aconstel.A
1.1.12400.0

MicroWorld eScan
Trojan.GenericKD.3017400
17.0.0.153

NANO AntiVirus
Trojan.Win32.Agent.dzyzpn
1.0.14.5798

nProtect
Trojan.GenericKD.3017400
16.02.05.01

Panda Antivirus
Trj/Sharik.B
16.02.20.11

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1120

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
23.00.65.16218

Sophos
Mal/Generic-S
4.98

Trend Micro
TROJ_GEN.R00UC0DB116
10.465.20

VIPRE Antivirus
Trojan.Win32.Generic
47038

File size:
177.5 KB (181,760 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
Hacker MiniMundos.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\hacker minimundos.exe

File PE Metadata
Compilation timestamp:
1/28/2016 10:31:13 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:qcUAFBYe18MQfCYHp4/YLehFAcMUcI56AogOoSxAequid6VeyTBx:3YebcrvLehWtI5tXyxAWid68

Entry address:
0x2D0AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
172.5 KB (176,640 bytes)

The file Hacker MiniMundos.exe has been seen being distributed by the following URL.

Remove Hacker MiniMundos.exe - Powered by Reason Core Security