mitolojionline.exe

Mitoloji Online

37GAMES oyun merkezi

The executable mitolojionline.exe, “Mitoloji Online Setup” has been detected as malware by 6 anti-virus scanners. This is a setup and installation application, however the file is not signed with an authenticode signature from a trusted source. The file has been seen being downloaded from abdownload.37.com.
Publisher:
37GAMES oyun merkezi

Product:
Mitoloji Online

Description:
Mitoloji Online Setup

Version:
1.0.0.0

MD5:
8b01f266d97afc00dcb759057ae7d769

SHA-1:
c690a3f1167af840de9f7f6bf8b271ba3bb8e600

SHA-256:
773d888da1d1932f010b0028a3dc574fb2768034821c7ab34a4035e16b44691b

Scanner detections:
6 / 68

Status:
Malware

Analysis date:
11/24/2024 5:28:50 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Kukacka
160518-2

Emsisoft Anti-Malware
Win32.Sality
11.5.0.6191

ESET NOD32
Win32/Sality.NBA virus
8.0.319.0

F-Prot
W32/Sality.E.gen
4.6.5.141

Microsoft Security Essentials
Threat.Undefined
1.225.160.0

Norman
Win32.Sality.3
22.05.2016 07:18:28

File size:
1.1 MB (1,166,600 bytes)

Copyright:
37GAMES oyun merkezi

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\documents and settings\administrador\meus documentos\minhas imagens\mitolojionline.exe

File PE Metadata
Compilation timestamp:
12/5/2009 7:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:7W4sfGrPfn/iYX7qXhzsOorqbwIJjDNN1vpRSscK0ICmzQ:CQPf3qXlyq0uDXRSPR9/

Entry address:
0x323C

Entry point:
60, 8B, CE, 0F, BE, D2, FE, C2, F2, 80, D4, 7C, F2, 84, E7, 8A, DA, 86, EA, 87, D2, F6, C3, B8, 24, F1, F6, C2, 5C, 8D, 2D, 52, E5, 22, CB, E8, 41, 00, 00, 00, 33, C0, 78, 07, 1A, CC, BD, 88, 0C, CF, 00, 41, C7, C2, C7, 65, 43, A6, 87, CE, 30, E5, 4A, 05, EA, FE, FF, FF, FE, CB, 0F, AF, FA, 18, CF, 05, 17, 01, 00, 00, EB, 01, F2, 0F, BF, FD, 8A, F6, 88, DA, 75, 02, 87, D9, 3D, F6, 01, 00, 00, 0F, 82, C1, FF, FF, FF, 5F, 72, 09, 8D, 05, CD, 91, C6, 0B, C6, C2, 16, 57, 56, 89, EB, 21, E8, 0F, AF, C5, 2C, 2F...
 
[+]

Code size:
23 KB (23,552 bytes)

The file mitolojionline.exe has been seen being distributed by the following URL.

Remove mitolojionline.exe - Powered by Reason Core Security