load_avengers_androidmtk.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from dc708.4shared.com.
MD5:
6ba675f30f803b63b87724f38ad276b8

SHA-1:
d0fda278a80cee5dda000347a3331da57a361aef

SHA-256:
380ba90cfbadce289cea0041040833756327bec6283a9047a79fec5097cbbd23

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 2:54:59 AM UTC  (today)

File size:
1.3 MB (1,413,632 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\load_avengers_androidmtk.exe

File PE Metadata
Compilation timestamp:
7/15/2016 3:48:13 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
1.50

CTPH (ssdeep):
24576:BZhbnllQdD2P2fTevD8WJ746Yr7/8OqB7+Dp+BWca0vb/UWpmw1x14kzu:idD2QTwD8WJ7TQJ+a0z/UWMwV4kS

Entry address:
0x36B000

Entry point:
89, FD, 88, DD, 8D, 05, 2B, 94, 2D, E7, 80, EE, FD, F6, C2, 66, 80, FF, 6E, 18, F2, 85, F5, 85, DB, 8D, 15, 07, 5E, 86, 6F, 85, DA, 81, F9, 15, 6B, 00, 00, 8D, 05, EB, 5D, D8, B5, 84, F5, 23, F7, 84, EE, 43, 87, F1, 10, D2, C6, C0, B8, E8, 3F, 00, 00, 00, 2B, C0, F3, 12, D6, 21, FD, 84, EC, 89, FE, 0F, B6, F3, 05, C3, 08, 00, 00, 74, 06, 8D, 35, 4A, 81, 6A, A4, 2D, C2, 08, 00, 00, 81, FE, B5, 33, 00, 00, 72, 02, 89, EA, 81, E6, E3, 8C, 79, 1B, F3, 09, EF, 4E, 3D, 50, 02, 00, 00, 0F, 86, C3, FF, FF, FF, 5B...
 
[+]

Code size:
20 KB (20,480 bytes)

The file load_avengers_androidmtk.exe has been seen being distributed by the following URL.

Scan load_avengers_androidmtk.exe - Powered by Reason Core Security