lc_client.exe

Cheat Client

The executable lc_client.exe has been detected as malware by 15 anti-virus scanners. The file has been seen being downloaded from dc117.2shared.com.
Product:
Cheat Client

Version:
1.0.0.0

MD5:
2c36ee5d4e128fe55e4fc21a8cb03210

SHA-1:
32c404ba622db634da3e10d4c11131c289d4f02b

SHA-256:
29f817c244b457d0351b63fd00c1f7b43a2341c536ae8f57c2c66479364ff802

Scanner detections:
15 / 68

Status:
Malware

Analysis date:
11/15/2024 10:01:10 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Rogue.KD.831179
7.11.61.106

avast!
Win32:Dropper-gen [Drp]
2014.9-160709

Bitdefender
Trojan.Generic.KD.831179
1.0.20.955

Comodo Security
UnclassifiedMalware
15267

Emsisoft Anti-Malware
Trojan.MSIL.Packed.Confuser.AMN
8.16.07.09.08

ESET NOD32
MSIL/Packed.Confuser (variant)
10.8016

F-Secure
Trojan.Generic.KD.831179
11.2016-09-07_7

G Data
Trojan.Generic.KD.831179
16.7.22

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.2.0.0.0

McAfee
Artemis!2C36EE5D4E12
5600.6344

MicroWorld eScan
Trojan.Generic.KD.831179
17.0.0.573

nProtect
Trojan.Generic.KD.831179
13.02.16.01

Panda Antivirus
Trj/OCJ.C
16.07.09.08

Trend Micro House Call
TROJ_GEN.RCBB1BA
7.2.191

VIPRE Antivirus
Trojan.Win32.Generic
15574

File size:
392 KB (401,408 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2012

Original file name:
Cheat Client.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\lc_client.exe

File PE Metadata
Compilation timestamp:
12/20/2012 2:19:07 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:7wd0M2fJ6AbRW1KPP8ufbH7E4UaAP/Xy4aieR4RP90l65tOvidXs/:ci5hhPhfzwUQxeGRP9044AX

Entry address:
0x481EE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 58, 00, 00, 80, 10, 00, 00, 00, 70, 00, 00, 80, 18, 00, 00, 00, 88, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 03, 00, 02, 00, 00, 00, A0, 00, 00, 80, 03, 00, 00, 00, B8, 00, 00, 80, 04, 00, 00, 00, D0, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 7F, 00, 00, E8, 00...
 
[+]

Entropy:
6.3266

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
280.5 KB (287,232 bytes)

The file lc_client.exe has been seen being distributed by the following URL.

Remove lc_client.exe - Powered by Reason Core Security