kemulator_0.9.8_setup.exe

JavaEmulator.com

This is a setup and installation application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
JavaEmulator.com

Description:
KEmulator 0.9.8 Installation

Version:
0.9.8

MD5:
b1e44eaed5b358bb92052cebc0bb75d0

SHA-1:
5e4c4a1643979f16101cb164d5f7d05dc0bcbe38

SHA-256:
6fb6171965f2e0540cdf12998c91043489a3f2754132f52bd1d9594721bd44da

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/24/2024 9:35:30 AM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Trojan.Win32.Generic.152DC7D1!355321809
23.00.65.14404

XVirus List
Win32.Detected
2.4.6

File size:
2.5 MB (2,635,781 bytes)

Copyright:
JavaEmulator.com

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\kemulator_0.9.8_setup.exe

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:doDkJosqdn/s827No2Bf6OqpB6Oxj+KlohbQslWXD23:dohs0dGo2R6OqpqtlWTk

Entry address:
0x19B64

Entry point:
55, 8B, EC, 83, C4, F0, B8, 9C, 9A, 41, 00, E8, B8, AB, FE, FF, B8, C4, 9B, 41, 00, E8, 5A, DC, FE, FF, 8B, 15, C8, A6, 41, 00, 89, 02, 8B, 15, C8, A6, 41, 00, 8B, 12, A1, CC, A6, 41, 00, E8, 48, D5, FF, FF, 8B, 15, C8, A6, 41, 00, 8B, 12, A1, 6C, A6, 41, 00, E8, 02, 71, FF, FF, A1, C8, A6, 41, 00, E8, 14, 18, FF, FF, E8, D7, 99, FE, FF, 00, 00, 00, FF, FF, FF, FF, 01, 00, 00, 00, 2A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9884

Developed / compiled with:
Microsoft Visual C++

Code size:
99 KB (101,376 bytes)

The file kemulator_0.9.8_setup.exe has been seen being distributed by the following 47 URLs.

http://gsf-cf.softonic.com/5e4/c4a/.../file?SD_used=0&channel=WEB&fdh=no&id_file=331823&instance=softonic_en&type=PROGRAM&Expires=1477256030&Signature=bfKrQvCW84P~hzfLRllS32gGOSLMbNK~mi2Vazdhpib2uAvWEmybl~FQp9QdOM6nAXPzXukA-G8mYP857f6FN~G-IvSi8XfTkmwxwPHippBro7eGMps3ZLDYQ9nbBvLbSDyi7jA9zJvHSFsJYK2tgPWB4cGZ5UUqX~L9pihz7ao_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=KEmulator_0-9-8_Setup.exe

http://f51.y8top.net/2107tmp/cf/ngv/2015/.../KEmulator_0.9.8_Setup.exe

http://gsf-cf.softonic.com/5e4/c4a/.../file?SD_used=0&channel=WEB&fdh=no&id_file=331823&instance=softonic_en&type=PROGRAM&Expires=1470891869&Signature=hzzt-HhIDcjz-YhQeDSKlsyZaZcUz~peJLsY9xZS7OIMDsOIIm4Vso4BPFaRZuR4mF7tR25mxbFz5jazUWEbMgFDB2zsAmDouQEVNN52K8mL9LF1-arl76IH3RgFX3OUn2Z5J5eutRuz48pVQY6quRh556H9AxbPu4-V3w4w4fA_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=KEmulator_0-9-8_Setup.exe

http://gsf-cf.softonic.com/5e4/c4a/.../file?SD_used=0&channel=WEB&fdh=no&id_file=331823&instance=softonic_en&type=PROGRAM&Expires=1473647460&Signature=gqz4vLVmMVp6rLDhXHIlPlEpb6nD1UVvheF3DEu01YoAv6cNJAZYJI6gtnfwsdRNROvZzhCpjhGKU14XYLQyYSUOQYtkzVJgUn0B7gXDpj9VBsFw1FtnLGJSbmH0Zk2PdW8bSFmoX7GW13eJUCJ5chxQFTY-ICYBsyroF2Y2IYs_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=KEmulator_0-9-8_Setup.exe

http://gsf-cf.softonic.com/5e4/c4a/.../file?SD_used=0&channel=WEB&fdh=no&id_file=331823&instance=softonic_br&type=PROGRAM&Expires=1450284750&Signature=FLAURx-fPKWmDQq480Ff9vOeYjPND-gkyicCVefqHgcQpmaVtpZkGvx5U-fXhYnD7PgSUSRMjDncpO9rEPu4A2m73UTej5wfhBmQgT2xu23eceI1b~jqNy6fzHyxNmfyn3YCMmrJeAQwkFPhQFkLUoUcl913r69L-DCAgnGMBd4_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=KEmulator_0-9-8_Setup.exe

http://gsf-cf.softonic.com/5e4/c4a/.../file?SD_used=0&channel=WEB&fdh=no&id_file=331823&instance=softonic_es&type=PROGRAM&Expires=1473828128&Signature=TgBeWttyDoOIP3rqxTRBGapDJaGw3hZ0eT6VFS8M8aGLLFzi4ab0MPPWp6RZwcpeShAy~GnJ6mKW7GfBEBQZxrnO7OBSmp8H7nfjHMRCqZXuayqCOX1aOQfzjRO~1~xGrjLF4VBgwcWV8b61Fxjomv9~SHf01SUUjxwZWNw9gZg_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=KEmulator_0-9-8_Setup.exe

http://c236.x8top.net/2107tmp/cf/ngv/2015/.../KEmulator_0.9.8_Setup.exe

http://download664.mediafire.com/crbk3a0z1gdg/.../KEmulator_0.9.8_Setup.exe

http://c236.y8top.net/2107tmp/cf/ngv/2015/.../KEmulator_0.9.8_Setup.exe

http://f3.softwaretop.net/tmp/cf/ngv/soft/2014/.../kemulator_0.9.8_setup.exe

http://gsf-cf.softonic.com/5e4/c4a/.../file?SD_used=0&channel=WEB&fdh=no&id_file=331823&instance=softonic_en&type=PROGRAM&Expires=1475913905&Signature=bpTeD~qYmE1CCyTxLGMrUlVt9-9etT38LXNnKAlxl4cQszpvH~MqeKa0agOqEUOkkENQiICgV-056hmLZs13Dnh9TaszpY3dv79NvxO~M8LQ0Eg9py4G4CuikDdmNiKibs9tEUXDMQWktQYka7t~djDBNsld3g5IiAmAlcUEMng_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=KEmulator_0-9-8_Setup.exe

http://w6.getpedia.net/Data/Soft/Free/.../KEmulator_0.9.8_Setup.exe

http://w7.getpedia.net/Data/Soft/Free/.../KEmulator_0.9.8_Setup.exe

http://gsf-cf.softonic.com/5e4/c4a/.../file?SD_used=0&channel=WEB&fdh=no&id_file=331823&instance=softonic_es&type=PROGRAM&Expires=1471722046&Signature=B7fq1Nsp5IIA4S15M2IbTgIC3uFZ~H1zsHNU9HQhqIIc2UiDOz7aRFA8sq~AZqpH5wBwzsgkClMt--x8qj~wCo8TaZmzM7E5ZkJrIcpfo4XoI~vEdQGccFQz-nhYSDpqa85mhjVudC5ksngzkkEoiUBrhkCXXPSu67tk9v5oI~4_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=KEmulator_0-9-8_Setup.exe

http://gsf-cf.softonic.com/5e4/c4a/.../file?SD_used=0&channel=WEB&fdh=no&id_file=331823&instance=softonic_en&type=PROGRAM&Expires=1469659725&Signature=GlqvmdRiUUa47PKRYgQlgBu~4tKLaBMaVY-uvQ1K18edGeLtjeZ7srHkMYIi8hSlwaaiGUtr2p~LVxgvWYWB-B-Y0pbraoHPlWO4RRNFqp06-5NxCbw11FsOaPj4V-c1x-1oHLc4HQj7seh2VZ-xeTI-ybxP4uU2jzvdb6qZq3E_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=KEmulator_0-9-8_Setup.exe

Latest 30 of 47 download URLs

Scan kemulator_0.9.8_setup.exe - Powered by Reason Core Security