megacubo_10.9.1.exe

Megacubo

www.megacubo.net

The application megacubo_10.9.1.exe, “Megacubo Setup ” has been detected as a potentially unwanted program by 9 anti-malware scanners. The program is a setup application that uses the Inno Setup installer, however the file is not signed with an authenticode signature from a trusted source. The file has been seen being downloaded from d.likelyaa.com and multiple other hosts.
Publisher:
www.megacubo.net

Product:
Megacubo

Description:
Megacubo Setup

MD5:
509109677b31ad4de1dd4aa7a668f5cf

SHA-1:
c014202e8cff1cf9b417ec4e197799bd4b6dd5a5

SHA-256:
ad800a43ef7cff6a014233a8bb2ba2a947b949b0bb520fca2364e68a40c57431

Scanner detections:
9 / 68

Status:
Potentially unwanted

Analysis date:
11/15/2024 7:26:06 PM UTC  (today)

Scan engine
Detection
Engine version

Baidu Antivirus
Adware.Win32.Somoto
4.0.3.14812

Dr.Web
Trojan.DownLoader11.13453
9.0.1.0224

ESET NOD32
Win32/Somoto
8.10220

K7 AntiVirus
Trojan
13.183.12981

McAfee
Artemis!509109677B31
5600.7040

Norman
Suspicious_Gen4.GUJYT
11.20140812

Sophos
Generic PUA MA
4.98

Trend Micro House Call
Suspicious_GEN.F47V0702
7.2.224

VIPRE Antivirus
Trojan.Win32.Generic
32020

File size:
4.1 MB (4,272,058 bytes)

Product version:
10.9.1

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\megacubo_10.9.1.exe

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:U4SfBVqy5hxsdQzto+jJrMNX3/7RIFAJ7DXbC3MxOsGAH9E5Whsi:hSpV5qdQznjJ4JaiGwG55i

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file megacubo_10.9.1.exe has been seen being distributed by the following 15 URLs.

http://d.likelyaa.com/?ic_user_id=9289&data=quBN/SGQ8w766VIaY4QDdZUuE1nVRJ7KikiIhQ0hao24148wl4ZaIXrUQ2uD/kGCPLF2zPImd8pDjunXYPqabuhjgFSnGjBScETCJrdxz0UrNN/FmrxdwZP0q4W6BtfPppzbfmgVNSFywYMOJjY47Bf6vtMZaspC0RXC466Y8FJXYSbJ8uEKDn3xfVJ6ltwgzSz0ioiTUFqkwoiRIKuRuEYOaEhAl3I7DwpjcMxWWCQLs4rivL9wMc6N hkPasaMI aL9w93ZVy6RiWwyIqfyu3GIUvhJMEBGFOTaQsAPp8YCDIZ52RERPT5yVlrl1rE7hhtyzJ56jjq PFAv3jTZhIFpdELwOmPaNjgcITdKfmR1fBWvPqj3xkpsGV8pn2PZAW7qd6Ag550HcnoaSu5Vb9kAE9FvTogYu y2xeYX0n5zMIvwxnIpD/m4uY5d5bGJ925InZgMtJSp4iaIBaNp/wfekfwT7VDgelPN/NrijP6Wgn5uleRM4L JB FqFs5NRcCn4xjW2uBv6Y0jiS3wRgc2dzE3qVn/Cdt3vZxj9Ak CFZZynl UI7qgk1C1Auaj13wrXTNhnw1tYhFFefdin2V ogjy9G/C9zc9WWUXU8tg3vMnSc92nvcDRibsKYejFtIXGqfYaZHuvkJft/5EefrH89y rQMxiIVnQ2VkXzaXDmPBUd9iSUXV9Zrm8ZgZJciGF37V7/yVnn1Xj7J397SprM&key=bfqF/inMRznJw52y OmPjM h951pNhm3dr6cZG8WMq7LGVRkT L/6iZw6eoy6v/BTJZEHh018U/5vLM6HXRq/.../dXqz0YD8h1tyHAHmr2S3qBX5A

http://gerenciador.nzs.com.br/nocache/programas/urls/iron/.../megacubo-94-71-4102981.exe

http://d.baixakifiles2.com/?ic_user_id=9289&data=w0NRDE4i9iOdpR4VN09wef7msHeOWacqDD3f7nsDG PhK najjTvSNr8hI80zKYFWu5EcN4fp3uMWhbewVWVqiPwAlxgdnzyoY0WK8z0In8f7UMN26BMk5nuboEjYqjMSFEfZDWNDhlYNYMCDkJxgnwZfZgXyIJ ZRFsk5Vz AbhTZ0ud7OV7zflKTe5dvyEnyYbbSSNgVFLRgqsjk3Yi19KShHfPJAzKQSzt8ZZ6qoTL3nLB/ISaGoRcO3VEMC7xLV2pFqLQDzlsxeGsCrwWZ57Yog3y5EFko7W7ZU UfhDCFOwDSP7HDGazCS8qjIf7wg0RhHEgzNRIxUPIuHhDezQFK71g1OkurlnSW4XGVxEM/acM7PhWpDc4I0kh6SvXCv7IxBK hnF1UehWCP9UvIWALR6g0vKqcAvMLT1pClqQITisCGWRIknu04o3FZvUu/EPYkJ10i5fCVKm2VBsVfxCgBQbGVYbVO0o7WKvwUj8ZrrHJJ8GjUZjUtSoFde/hQWj1B35uYCt1Zl6OgMhSFaRBaTwS9GS/52OxHeKXDLV3Ksylr43IuNoffeyOoOC67gHo25kVaL0QAAUd7QrRgQ4Z7FcxyL1hxQaVdy1HLl 6n5g8SqMR3aOINGVCdyczxIB/Bwp1w2Ch5tfBNL3Z5dX7I JJaKdVxCxKMqEYdTVVE6nHIHJ2 ZJphQBCRekDGZICUG 4Wiwb4SIJDQYuqwkUjS&key=oYiKNdcwMPRB3 EhHF84JGItHHXu0QRHkk5Lqny1ovlpUbWz3lx0JUxX1RLD/.../5qeSYpY4dmApiT2pDN xTmMF5mjJE9ZLLM UXwZCZ1Lfy LrZHsbiPKWdbgSNItF8djOvvHLsxxFchqclexsJUrDLKXGekHc P

http://cdn.goodinstallcosmos.com/c?x=rsasyD1zvj A/fJy47xD rkur4/ s87XBvEr95lyCQk=&c=I/U1nopROb2PE /a/xbowoio1meB4Uic2EAXtEzecLwmnjUw/GkXBi6hnw0fGKg1Y4WdqItk9CLvalbGA7U0aw==&fallback_url=http://sourceforge.net/projects/megacubo-br/files/megacubo-br/Megacubo 10/.../download&downloadAs=megacubo-32-bits.exe

http://d.baixakifiles2.com/?ic_user_id=9289&data=5ltWaK1tzrDbge/oA MRrHU37wmMmvl2eSBV1dlBqJDbHkBgkli5VN6oEd555YFCe4ZQey7U9IMW2RxbCYfnYAYP0p0XJQFbacmsbCzynf6VbitVnVRlndEe6Igm9mAn4ixBaT4t1IY87TqZpOc8P3NWBL Sv wrCkoVmXt /1pNwQR5kqXloO qYrz1FbVqkKgJ48Y9G9XZ/vSpI07GS/J 05JISeJ89yhmyhxjJqgrVh/lA/qm fy0/i4RKqPTQc1SRVkVqgE1FPqpjFU9Iw hlQIEynl3BjfeRG3KcZI06E chTlZEl5v796ozIg2l PCfWSJAiD93uHCzO6Vsbqf4N8ABOnm6YnOnGSicZQTAsSLJiEalHQc39u4Sv8Vr25r35fJ/jjyE7r RqFm5tkCOQ65b3JZqsPROvHPB4e8KnFXqcqeGkqzkr0yuip4bB79bqKmj8c7Ipbj8GeeoigU/JXvlBw65vrPSalMNZBFwNCOJEvJIXVgKrhXWbYdHG/OeyXbfvMTVkAJkZDc4yD0qTAOLXXsUkycnUMkpscKfVHCoitps4u5buJdcrHz/aPLEFZ95ztagnsq9vRF7bEapepQ3VKn3LE/VFCpIs6AZsTfrxobjpI8y//vfrn5R7nxvVcqq6l3qZYdu1y7L/d12fqLLr9Z4dB21fgmZMtcepkrcY ebN1c/ExnbF2pfFIF doA/Q EVAkxv5UYnbbBhUsp&key=nx6vhlYr7PrHyvyQSeQfYWLKUWBaCr8P2DCxzFRtuq0ZECJdTQ3yG/N 2cwgdO1/.../pC11QtR0N1qXGJx4xotIUQ3oXTnoKiQUCWJzDgOu0IHBlxsE2yod335d2adlbHweOH9jd24tYMS

http://d.contentaccessfilesnow.com/c?x=hYGxmuiU9okG6PjEvmlxTCTpER7Jn4ggMO00Qxl/21Y=&c=ZCk7Vy13Q9q760wBnNRxs56tRnKxXWbNizEPuDoB9N8B Hfq60g34pCiMB1une7gGUXS GEGeZcu 4A3zfAfnQ==&fallback_url=http://sourceforge.net/projects/megacubo-br/files/megacubo-br/Megacubo 10/.../download

http://cdn.straightstoragepool.com/c?x=tv7Z3qXnR9xOCV7ZLGXS3NvFjSzzDX3dIwtH7/qNGnM=&downloadAs=Megacubo_10.9.1.exe&c=Dq4FRxeulHMaBGA7rVxyHAdeAEQw w/E0qh8OqHHTs4l5cXX0hsO1D2Hf7Fr86eRc/.../2VZOw==

Remove megacubo_10.9.1.exe - Powered by Reason Core Security