keygen-cad2007.exe

Keygen Application

Z.W.T

This is a setup program which is used to install the application. The file has been seen being downloaded from c2down.cyworld.co.kr and multiple other hosts.
Publisher:
Z.W.T

Product:
Keygen Application

Description:
Keygen

Version:
1, 0, 0, 1

MD5:
5d5d05707744c5fd7135b0ac50164fa4

SHA-1:
721ff73b9061ae6d48d5cb3fec2b71a48f22c08c

SHA-256:
c7e6946d8fedd0d0efbfef6faba71477a12a1b7133b0c25c4be5d27023b0a2b5

Scanner detections:
10 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/16/2024 7:56:16 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Generic28
2015.0.3478

Fortinet FortiGate
W32/KeyGen.M
5/10/2014

F-Prot
W32/Heuristic-KPP
v6.4.7.1.166

IKARUS anti.virus
not-a-virus.Keygen.AutoCad
t3scan.1.6.1.0

K7 AntiVirus
Riskware
13.177.12006

McAfee
Generic.dx!5D5D05707744
5600.7134

Norman
Suspicious_Gen4.GWFM
11.20140510

Sophos
Mal/KeyGen-M
4.98

VIPRE Antivirus
Trojan.Win32.Generic
28952

Zillya! Antivirus
Trojan.Genome.Win32.214894
2.0.0.1780

File size:
43.5 KB (44,544 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright (C) 2006

Original file name:
Keygen.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
8/16/2006 5:10:02 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:jZ/7CJLfeKlsL/2GJXPDdiubehfPP4800RyMkq/DXHb7GwMdMA:d2JLfeEMOO5pb6IHIdkGDXHHML

Entry address:
0x17BB0

Entry point:
60, BE, 00, E0, 40, 00, 8D, BE, 00, 30, FF, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Packer / compiler:
UPX 2.90LZMA]

Code size:
40 KB (40,960 bytes)

The file keygen-cad2007.exe has been seen being distributed by the following 3 URLs.

http://c2down.cyworld.co.kr/download?fid=642221c86a657100169721c89bf70d07&name=CAD2007 - Keygen.exe

Scan keygen-cad2007.exe - Powered by Reason Core Security