martinezbarajas28.exe

The executable martinezbarajas28.exe has been detected as malware by 1 anti-virus scanner. The file has been seen being downloaded from doc-0k-10-docs.googleusercontent.com.
MD5:
087e23ac8facaae0cec91ee03ed9eb2e

SHA-1:
068532339a9fcedf5a61e61505b9d40232826423

SHA-256:
ca3f178172892e7b11caea2444028061173ef378640dcbb46f115dc3911cca4c

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
12/25/2024 12:53:58 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Threat.Win.Reputation.IMP
16.6.3.15

File size:
16.1 KB (16,479 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\martinezbarajas28.exe

File PE Metadata
Compilation timestamp:
4/14/2016 2:54:51 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.56

CTPH (ssdeep):
192:lDHKn3TD3uq/L+4JC09P/TddtI/jyFLqcCDq:aD+q/lJCOPNueRqrW

Entry address:
0x1220

Entry point:
55, 89, E5, 83, EC, 08, C7, 04, 24, 01, 00, 00, 00, FF, 15, F8, 50, 40, 00, E8, C8, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 89, E5, 83, EC, 08, C7, 04, 24, 02, 00, 00, 00, FF, 15, F8, 50, 40, 00, E8, A8, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 8B, 0D, 10, 51, 40, 00, 89, E5, 5D, FF, E1, 8D, 74, 26, 00, 55, 8B, 0D, 04, 51, 40, 00, 89, E5, 5D, FF, E1, 90, 90, 90, 90, 55, 89, E5, 5D, E9, 77, 02, 00, 00, 90, 90, 90, 90, 90, 90, 90, 55, 89, E5, 83, EC, 18, 83, E4, F0, B8, 00, 00, 00, 00, 83, C0...
 
[+]

Entropy:
3.9891

Packer / compiler:
Dev-C++ 4.9.9.2

Code size:
2.5 KB (2,560 bytes)

The file martinezbarajas28.exe has been seen being distributed by the following URL.

Remove martinezbarajas28.exe - Powered by Reason Core Security