moviestarplanet-hackv1.3.exe

MovieStarPlanet Hack v. 1.3 par steven007

The executable moviestarplanet-hackv1.3.exe has been detected as malware by 1 anti-virus scanner. This is a setup program which is used to install the application. The file has been seen being downloaded from moviestar55632.magix.net.
Product:
MovieStarPlanet Hack v. 1.3 par steven007

Version:
3.00

MD5:
eb567bc875f4773f780afa4d22c05887

SHA-1:
5cf1cf4ee24da6e63ddcc8d60dad28c7b02cc433

SHA-256:
957fdb221c27eb9e8c3c72b4b3bb01bdf9c05de4ca421f812f98010e9911d34b

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
12/26/2024 4:23:51 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Threat.Win.Reputation.IMP
16.3.6.4

File size:
589 KB (603,136 bytes)

Product version:
3.00

Original file name:
MovieStarPlanet Hack v1.3.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\moviestarplanet-hackv1.3.exe

File PE Metadata
Compilation timestamp:
11/15/2014 2:46:16 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:8/lsuhxWjH8KZCakIJd/8c9/K/lGRgOUqmq9kR6lhKX52VVks+OBEswpUOi:4suzAcACakIJe4/K/cRgOnmq9g6U2kex

Entry address:
0x1000

Entry point:
68, 01, F0, 44, 00, E8, 01, 00, 00, 00, C3, C3, 98, 03, D6, D1, 83, AC, 3F, 4B, AC, A4, 68, AE, 87, AF, DB, 1F, C1, 7B, 6D, D5, 5C, 4B, D4, 35, 4B, AD, 3F, 6C, 4E, 52, 82, 54, 60, 3C, 62, 02, C3, B0, 5B, F6, D8, 6A, 80, FB, A3, 0C, AA, C9, C4, 77, 16, F4, CF, F1, 4A, 52, 12, AA, 56, 12, 05, 64, 13, 93, 43, E3, DC, 96, 2A, F1, BB, E4, 91, E7, 64, 4F, 41, 7E, 93, 21, AB, 26, DF, FE, 08, 74, 53, 32, 03, FF, 86, E6, CB, B2, 64, B0, 19, 2A, AC, 66, 4A, 97, 72, 44, 2B, C8, F4, E4, CA, 86, B9, 74, 8A, 37, F6, 7C...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
300 KB (307,200 bytes)

The file moviestarplanet-hackv1.3.exe has been seen being distributed by the following URL.

Remove moviestarplanet-hackv1.3.exe - Powered by Reason Core Security