internet-explorer.exe

Операционная система Microsoft Windows

Smart Isteit, TOV

While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The executable internet-explorer.exe, “Исполняемый файл для игры "Mahjong Titans"” has been detected as malware by 1 anti-virus scanner.
Publisher:
Microsoft Corporation  (signed by Smart Isteit, TOV)

Product:
Операционная система Microsoft® Windows®

Description:
Исполняемый файл для игры "Mahjong Titans"

Version:
6.1.7600.16385 (win7_rtm.090713-1255)

MD5:
d9e65b1effe55e989503dc83e5607af2

SHA-1:
1aa0119a1efe7ad5f3d08ee023235152e43da9d6

SHA-256:
9a650a1fc86c66b9f7c211c006d4756a0b8178ee7484156d1ecb167de7ce916f

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/6/2024 8:31:09 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.2.14.7

File size:
3.6 MB (3,816,904 bytes)

Product version:
6.1.7600.16385

Copyright:
© Корпорация Майкрософт. Все права защищены.

Original file name:
mahjong.exe.mui

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\скачано\internet-explorer.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
8/18/2016 4:00:00 AM

Valid to:
5/11/2017 3:59:59 AM

Subject:
CN="Smart Isteit, TOV", OU=IT, O="Smart Isteit, TOV", STREET="Vulytsya Startova, Budynok 3", L=Misto Dnipropetrovsk, S=Dnipropetrovska, PostalCode=49041, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
755F730067677AB16CFA5C2ED8D59C72

File PE Metadata
Compilation timestamp:
2/23/2014 3:37:10 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x397EA8

Entry point:
6A, 70, 68, 18, A1, 79, 00, E8, F4, 01, 00, 00, 33, FF, 57, FF, 15, 08, A0, 79, 00, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03, C8, 81, 39, 50, 45, 00, 00, 75, 12, 0F, B7, 41, 18, 3D, 0B, 01, 00, 00, 74, 1F, 3D, 0B, 02, 00, 00, 74, 05, 89, 7D, E4, EB, 27, 83, B9, 84, 00, 00, 00, 0E, 76, F2, 33, C0, 39, B9, F8, 00, 00, 00, EB, 0E, 83, 79, 74, 0E, 76, E2, 33, C0, 39, B9, E8, 00, 00, 00, 0F, 95, C0, 89, 45, E4, 89, 7D, FC, 6A, 02, 5B, 53, FF, 15, 40, A0, 79, 00, 59, 83, 0D, 68, 6F, 93, 00, FF, 83, 0D, 6C, 6F...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
3.6 MB (3,770,880 bytes)

Remove internet-explorer.exe - Powered by Reason Core Security