minecraft 1.4.6.exe

TeamExtreme

This is a self-extracting archive and installer. The file has been seen being downloaded from dla.uloz.to and multiple other hosts.
Publisher:
TeamExtreme

Description:
Minecraft 1.4.6 Installation

Version:
1.4.6

MD5:
9f5801e7dd5553b4db0590043e3d71d3

SHA-1:
f81b28fcd104ac72936692a47b38fae4d74b2e45

SHA-256:
1e854ddb90fd02a0d4f5355d2205678dcdd842001441fa8bebea6463357cb628

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 10:16:05 PM UTC  (today)

File size:
51 MB (53,426,283 bytes)

Copyright:
TeamExtreme

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\temc-minecraft146\minecraft 1.4.6.exe

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
1572864:dKh9MaR5dOt7zhmOzdIwn+VVn2u85zdY0jVG:+VOt7zhmIq++Ll8xg

Entry address:
0x19B64

Entry point:
55, 8B, EC, 83, C4, F0, B8, 9C, 9A, 41, 00, E8, B8, AB, FE, FF, B8, C4, 9B, 41, 00, E8, 5A, DC, FE, FF, 8B, 15, C8, A6, 41, 00, 89, 02, 8B, 15, C8, A6, 41, 00, 8B, 12, A1, CC, A6, 41, 00, E8, 48, D5, FF, FF, 8B, 15, C8, A6, 41, 00, 8B, 12, A1, 6C, A6, 41, 00, E8, 02, 71, FF, FF, A1, C8, A6, 41, 00, E8, 14, 18, FF, FF, E8, D7, 99, FE, FF, 00, 00, 00, FF, FF, FF, FF, 01, 00, 00, 00, 2A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9992

Developed / compiled with:
Microsoft Visual C++

Code size:
99 KB (101,376 bytes)

The file minecraft 1.4.6.exe has been seen being distributed by the following 11 URLs.

http://dla.uloz.to/Ps;Hs;fid=26867896;cid=1802357402;rid=686267543;up=0;uip=80.87.182.12;tm=1421092291;ut=f;aff=uloz.to;did=uloz-to;He;ch=1ce5ea7bb90f967c243c6d58046f5568;Pe/.../minecraft-1-4-6.exe

https://neu1-api.asm.skype.com/v1/objects/0-neu-d1-000cb897e3232ebc0b3881477daaf331/.../original

https://docs.google.com/uc?export=download&confirm=6nBN&id=0B1klyxKYfYBnQlJ1SjVQb2NnSkU

http://download2075.mediafire.com/eft1855x9g8g/.../Minecraft 1.4.7.exe

http://199.91.152.39/h4tubc2v2xpg/.../Minecraft 1.4.7.exe

Scan minecraft 1.4.6.exe - Powered by Reason Core Security