imo free video calls and chat for pc.exe

The executable imo free video calls and chat for pc.exe has been detected as malware by 1 anti-virus scanner. The file has been seen being downloaded from dragonset.info.
MD5:
61cd3ff03a32d91e4e2f9f5e2560c8bd

SHA-1:
1a60347154e7c40a83513791129cf19d78c06683

SHA-256:
96f232aa6b84ca647f4bc32ecc831d154c71a86d2f79b6b4d605f5094fcc0a99

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/27/2024 12:58:06 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Threat.Win.Reputation.IMP
16.2.7.23

File size:
1023 KB (1,047,552 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\imo free video calls and chat for pc.exe

File PE Metadata
Compilation timestamp:
7/27/2013 7:27:57 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:Asf3W7i7ffeLWMovyivHt5e1he6stYk6lYHIBswmO8SPnzQz9ULVMIbnmLykAav0:megWMcL15q7syVlC1lN5S0ykYZr+9fc

Entry address:
0xCAF4B

Entry point:
E8, 9D, 13, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 50, DD, 4D, 00, E8, AF, 18, 00, 00, E8, 6A, 15, 00, 00, 0F, B7, F0, 6A, 02, E8, 30, 13, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, DF, 02, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Entropy:
7.5611

Code size:
832 KB (851,968 bytes)

The file imo free video calls and chat for pc.exe has been seen being distributed by the following URL.

Remove imo free video calls and chat for pc.exe - Powered by Reason Core Security