me.paranoid.wifikill 2020.exe

The application me.paranoid.wifikill 2020.exe has been detected as a potentially unwanted program by 19 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download.appsfan.org.
MD5:
2f1c6121970dc097a2df71089ba9a2c6

SHA-1:
996cae9c4e97bf6c5b57013eda50941402289ef6

SHA-256:
140595404c3b0c754ca4ef0f4932682db631e83c16750a3df7511a39a6e45cc3

Scanner detections:
19 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 12:23:00 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Android.Trojan.Agent.gLAY
670

AegisLab AV Signature
Wifikill
2.1.4+

AhnLab V3 Security
Android-Trojan/Agent.929a
2015.04.06

Avira AntiVirus
SPR/ANDR.WifiKill
3.6.1.96

avast!
Android:WifiKill-L [PUP]
2014.9-150406

AVG
Android_dca
2016.0.3148

Baidu Antivirus
Hacktool.AndroidOS.Wifikill
4.0.3.1546

Bitdefender
Android.Trojan.Agent.gLAY
1.0.20.480

Emsisoft Anti-Malware
Android.Trojan.Agent.gLAY
8.15.04.06.09

ESET NOD32
Android/WifiKill.E potentially unsafe (variant)
9.11430

Fortinet FortiGate
Riskware/Wifikill!Android
4/6/2015

F-Secure
Android.Trojan.Agent.gLAY
11.2015-06-04_2

G Data
Android.Trojan.Agent.gLAY
15.4.25

Kaspersky
HEUR:HackTool.AndroidOS.Wifikill
14.0.0.2233

McAfee
Artemis!2F1C6121970D
5600.6804

MicroWorld eScan
Android.Trojan.Agent.gLAY
16.0.0.288

NANO AntiVirus
Trojan.Android.WifiKill.dgixtj
0.30.8.659

Sophos
Android WiFiKill
4.98

VIPRE Antivirus
Trojan.AndroidOS.Generic.A
39092

File size:
447.8 KB (458,583 bytes)

File type:
Executable application (Win64 EXE)

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
12288:2LALwshZ0sTRlrwCLtf79WKOqzT1+3wpVs5:5LzzHHjW2vnpW

Entry point:
50, 4B, 03, 04, 14, 00, 08, 00, 08, 00, C6, 3D, 44, 42, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 14, 00, 04, 00, 4D, 45, 54, 41, 2D, 49, 4E, 46, 2F, 4D, 41, 4E, 49, 46, 45, 53, 54, 2E, 4D, 46, FE, CA, 00, 00, 8D, 97, D9, 8E, A3, 46, 14, 86, EF, 47, 9A, 77, 98, CB, 44, 56, 37, 60, E3, 2D, 52, 2E, 00, 83, 31, 36, 78, C1, 60, EC, 1B, AB, 80, 32, 14, 3B, 45, B1, 3E, 7D, DC, 93, 28, EA, 74, 60, BA, EF, BC, A8, 3E, CE, 52, E7, FF, 0F, 2A, 48, D0, 03, 16, E4, C5, 84, B8, 40, 69, F2, C7, 0F, E6, 95, FE, FE...
 
[+]

Entropy:
7.9539  (probably packed)

The file me.paranoid.wifikill 2020.exe has been seen being distributed by the following URL.

Remove me.paranoid.wifikill 2020.exe - Powered by Reason Core Security