huntingdeath.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from huntingdeath.fr and multiple other hosts.
MD5:
f228ca83c9f55fdcf5394df45f8916e1

SHA-1:
48a89cfa0893a063da98927c17e4026aba4aafad

SHA-256:
27d25fc92b98032549e2e6a5567fcab7bf52bd5f06ddc08e8b1916c54714f015

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/27/2024 3:57:21 PM UTC  (today)

Scan engine
Detection
Engine version

AegisLab AV Signature
Troj.Gen.Smh!c
2.1.4+

McAfee
Artemis!F228CA83C9F5
5600.6495

Rising Antivirus
PE:Trojan.Bayrob!1.A3CB [F]
23.00.65.16206

Zillya! Antivirus
Downloader.Agent.Win32.293239
2.0.0.2626

File size:
1.2 MB (1,221,906 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\huntingdeath.exe

File PE Metadata
Compilation timestamp:
12/20/2015 11:51:01 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.22

CTPH (ssdeep):
24576:wK5mJKg9/Qzg4FtsRxatTRc3PSUSjhFaGKRrXHSXyY2XXu:8+M4FtsRxSTcqzaGKRriP2O

Entry address:
0x1590

Entry point:
83, EC, 1C, C7, 04, 24, 02, 00, 00, 00, FF, 15, 0C, 43, 41, 00, E8, DB, FB, FF, FF, 8D, 74, 26, 00, 8D, BC, 27, 00, 00, 00, 00, A1, 50, 43, 41, 00, FF, E0, 89, F6, 8D, BC, 27, 00, 00, 00, 00, A1, 38, 43, 41, 00, FF, E0, 90, 90, 90, 90, 90, 90, 90, 90, 90, 55, 89, E5, 83, EC, 18, 83, 3D, 0C, B0, 40, 00, 00, 0F, 84, 8A, 00, 00, 00, A1, 00, 70, 40, 00, 85, C0, 75, 5C, A1, 74, B0, 40, 00, C7, 44, 24, 04, 00, 00, 00, 00, C7, 05, 0C, B0, 40, 00, 00, 00, 00, 00, 89, 04, 24, E8, 0D, 4C, 00, 00, 83, 3D, 70, B0, 40...
 
[+]

Code size:
21 KB (21,504 bytes)

The file huntingdeath.exe has been seen being distributed by the following 2 URLs.

http://huntingdeath.fr/lobby/engine/.../HuntingDeath.exe

Scan huntingdeath.exe - Powered by Reason Core Security