one click pattern unlock v3.0.2.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from download2144.mediafire.com and multiple other hosts.
MD5:
3e80ce5e2387c65b0b828448e17aef12

SHA-1:
c8cda4e9092390ce9f1ee4f02450e7e9d6843168

SHA-256:
9414388605cf8935a808a50bbf265ac24a24b32ae5887ce2aa72faf9236951f4

Scanner detections:
6 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/27/2024 4:25:32 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Suspicious
7.1.1

Bkav FE
W32.Clod56f.Trojan
1.3.0.4562

IKARUS anti.virus
Win32.WinGGo
t3scan.2.2.29

McAfee
Artemis!3E80CE5E2387
5600.7243

Trend Micro House Call
PAK_Generic.012
7.2.21

Trend Micro
PAK_Generic.012
10.465.21

File size:
1.6 MB (1,673,125 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\one click pattern unlock v3.0.2.exe

File PE Metadata
Compilation timestamp:
5/23/2013 1:39:31 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:qZZBqiHtl/a9xO4FMSFh6CFD3jENNmjlkqd6Bz:qhqnfOIH6CFLSAyi6Bz

Entry address:
0x4CD000

Entry point:
EB, 01, 90, 90, 68, 00, 10, 40, 00, 68, 01, 7B, 02, 00, E8, 39, 00, 00, 00, 68, 00, B0, 55, 00, 68, 01, 05, 00, 00, E8, 2A, 00, 00, 00, 68, 00, E0, 55, 00, 68, 81, 11, 00, 00, E8, 1B, 00, 00, 00, 68, EB, 23, 60, 00, 68, C4, B3, 03, 00, E8, 0C, 00, 00, 00, 90, EB, 01, 62, 61, B8, 24, D4, 55, 00, FF, E0, 55, 8B, EC, 60, 55, 8B, 75, 08, 8B, 7D, 0C, E8, 02, 00, 00, 00, EB, 04, 8B, 1C, 24, C3, 81, C3, 00, 02, 00, 00, 53, 57, 8B, 07, 89, 03, 83, C7, 04, 83, C3, 04, 4E, 75, F3, 5F, 5E, FC, B2, 80, 8A, 06, 46, 88...
 
[+]

Entropy:
7.8747  (probably packed)

Code size:
640 KB (655,360 bytes)

The file one click pattern unlock v3.0.2.exe has been seen being distributed by the following 12 URLs.

http://download2144.mediafire.com/km6f2ln36dqg/.../One Click Pattern Unlock v3.0.2.exe

http://dc617.4shared.com/download/.../One_Click_Pattern_Unlock_v302.exe

http://download1633.mediafire.com/grg5vy0dkarg/.../One Click Pattern Unlock v3.0.2.exe

Scan one click pattern unlock v3.0.2.exe - Powered by Reason Core Security