hatley-castle-italian-garden-center-266-piece.exe

The executable hatley-castle-italian-garden-center-266-piece.exe has been detected as malware by 5 anti-virus scanners.
MD5:
0227ddd2aeb6e124863952508258a6b5

SHA-1:
e76f1a6ef5b4092a7ade4cdc1e8044ae77c85824

SHA-256:
abd0ae2b6960894f16ce9b29b7152a7e6b5d420f54e99085ceb907f21d5bdcf3

Scanner detections:
5 / 68

Status:
Malware

Analysis date:
4/1/2025 8:48:01 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.MulDrop
7.1.1

Dr.Web
Trojan.MulDrop4.20681
9.0.1.075

NANO AntiVirus
Trojan.Win32.MulDrop4.cznklz
0.30.24.1357

SUPERAntiSpyware
Trojan.Agent/Gen-Muldrop
8532

Trend Micro House Call
Suspicious_GEN.F47V0302
7.2.75

File size:
801.8 KB (821,085 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\hatley-castle-italian-garden-center-266-piece.exe

File PE Metadata
Compilation timestamp:
8/20/2007 3:57:33 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x1DD0

Entry point:
6A, 01, FF, 15, 0C, 70, 40, 00, 50, 6A, 00, 6A, 00, FF, 15, 10, 70, 40, 00, 50, E8, FB, F2, FF, FF, 50, FF, 15, 14, 70, 40, 00, 55, 8B, EC, 8B, 55, 10, 53, 56, 57, 6A, 03, 33, FF, 59, 33, DB, 23, D1, 33, F6, 33, C0, 80, FA, 01, 75, 0A, 6A, 01, B8, 00, 00, 00, 80, 5E, EB, 20, F6, 45, 10, 04, 74, 07, B8, 00, 00, 00, C0, EB, 13, F6, 45, 10, 08, 74, 0A, 6A, 02, B8, 00, 00, 00, C0, 59, EB, 03, 8B, 4D, 10, 39, 7D, 0C, 74, 3C, 3B, C7, 74, 38, 57, 57, 51, 57, 56, 50, FF, 75, 0C, FF, 15, 50, 70, 40, 00, 8B, F0, 83...
 
[+]

Entropy:
7.9752

Packer / compiler:
FASM v1.3x

Code size:
23 KB (23,552 bytes)