HawtMaple.exe

HawtMaple

Publisher:
HawtMaple

Product:
HawtMaple

Version:
1.3.3.7

MD5:
78bf8a28a44b4b4601d9044bcd31c505

SHA-1:
2aecbb443ba74e40fd31ab95cc4e41364c808917

SHA-256:
cac8dda6758bc15c2ff3c68e763be3628bcbba85e7a7d7900b1cc2bf52b36630

Scanner detections:
5 / 68

Status:
Clean  (5 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/5/2024 1:03:19 PM UTC  (today)

Scan engine
Detection
Engine version

Baidu Antivirus
Hacktool.MSIL.Confuser
4.0.3.1634

ESET NOD32
MSIL/Packed.Confuser.J suspicious (variant)
10.12421

K7 AntiVirus
Trojan
13.211.17567

McAfee
Artemis!78BF8A28A44B
5600.6471

Sophos
Generic PUA CK (PUA)
4.98

File size:
1.8 MB (1,937,408 bytes)

Product version:
1.3.3.7

Copyright:
Copyright © HawtMaple 2015

Original file name:
HawtMaple.exe

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\707f.tmp

File PE Metadata
Compilation timestamp:
1/30/2015 6:42:59 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:HCifhOcGiLVBYzPXYrDznZAaDlCobfUbSpJaBQAPDC4x41bCrX6xaFH/GzFFQv0h:HdperfYrnnJAGUbSm9DCt1rxGivw05

Entry address:
0x1AA41E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
1.7 MB (1,738,240 bytes)

The file HawtMaple.exe has been seen being distributed by the following URL.

Scan HawtMaple.exe - Powered by Reason Core Security