pal6.all.versions.tr22.v1.1.0-xiaoxing.exe

仙剑6小幸修改器

@小幸姐(Sachiko)

The application pal6.all.versions.tr22.v1.1.0-xiaoxing.exe has been detected as a potentially unwanted program by 32 anti-malware scanners. According to AVG, this software downloads additional adware offers during setup.
Publisher:
@小幸姐(Sachiko)

Product:
仙剑6小幸修改器

Description:
Pal6 Trainer

Version:
1.1.0.0

MD5:
c59384fc372ee2e83183bab361b75b3b

SHA-1:
213267105a607cbb183c6d6e6abfa5ebaefadfc1

SHA-256:
5bd0e7e864715c8f5f15a82eda8f374300324311990588310148770a1f5f7b2c

Scanner detections:
32 / 68

Status:
Potentially unwanted

Analysis date:
4/1/2025 8:48:10 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.2556480
-40

Agnitum Outpost
Riskware.NoobyProtect
7.1.1

AhnLab V3 Security
Trojan/Win32.Gen
2015.11.26

Avira AntiVirus
TR/Crypt.XPACK.Gen3
8.3.2.4

Arcabit
Trojan.Generic.D270240
1.0.0.624

avast!
Win32:Malware-gen
2014.9-170315

AVG
Downloader.Banload2
2018.0.2438

Baidu Antivirus
Trojan.Win32.Banload
4.0.3.17315

Bitdefender
Trojan.GenericKD.2556480
1.0.20.370

Bkav FE
HW32.Packed
1.3.0.7383

Comodo Security
TrojWare.Win32.Agent.OSCF
23659

Emsisoft Anti-Malware
Trojan.GenericKD.2556480
8.17.03.15.02

ESET NOD32
Win32/Packed.NoobyProtect.G suspicious (variant)
11.12626

Fortinet FortiGate
W32/Banload.AAEMS!tr.dldr
3/15/2017

F-Prot
W32/S-e743b39f
v6.4.7.1.166

F-Secure
Trojan.GenericKD.2556480
11.2017-15-03_4

G Data
Trojan.GenericKD.2556480
17.3.25

K7 AntiVirus
Trojan
13.212.17972

Kaspersky
Trojan-Downloader.Win32.Banload
14.0.0.-1313

McAfee
Artemis!C59384FC372E
5600.6094

Microsoft Security Essentials
TrojanDownloader:Win32/Banload
1.1.12300.0

MicroWorld eScan
Trojan.GenericKD.2556480
18.0.0.222

NANO AntiVirus
Trojan.Win32.Banload.dubwqs
0.30.26.4751

nProtect
Trojan.GenericKD.2556480
15.11.26.01

Panda Antivirus
Trj/CI.A
17.03.15.02

Quick Heal
TrojanDownloader.Banload.g5
3.17.14.00

Sophos
Troj/Agent-APDT
4.98

Trend Micro
TROJ_GEN.R028C0DGG15
10.465.15

Vba32 AntiVirus
TrojanDownloader.Banload
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
45436

ViRobot
Trojan.Win32.A.Downloader.2899968.E[h]
2014.3.20.0

Zillya! Antivirus
Downloader.Banload.Win32.64779
2.0.0.2527

File size:
2.8 MB (2,899,968 bytes)

Product version:
1.1.0.0

Copyright:
本软件受著作权法保护,未经本软件作者@小幸姐的许可,您不得对本软件进行非法注册、逆向工程、反编译、破解以及任何形式的修改;不得禁止遮掉、移开或去除本软件之版权所有、文字说明以及所有链接。

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
7/10/2015 8:23:18 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x3DD335

Entry point:
EB, 08, 00, 20, 2C, 00, 00, 00, 00, 00, E9, E8, 00, 00, 00, 70, 73, 6A, 85, 34, 66, 8F, 04, 24, 83, C4, 00, 8D, 64, 24, 02, E9, DC, FE, FF, FF, 83, C4, 00, 66, FF, 34, 24, 8B, EE, 66, FF, 74, 24, 01, 0F, CD, EB, 2F, 27, 4E, D9, 38, 9C, 66, 8F, 04, 24, 66, F7, D5, BD, DC, 3B, 6F, E9, 66, 8B, 44, 24, 01, 40, EB, D5, FD, 58, 66, FF, 34, 24, 66, F7, D1, B4, 1D, EB, 21, 02, 9F, 0F, 6A, 99, 0E, 72, 6D, 7C, 66, 0F, BB, D8, 66, 87, 0C, 24, 87, 04, 24, 89, 34, 24, 89, 14, 24, BD, E2, 93, D3, 3A, EB, D2, B9, C2, 5E...
 
[+]

Entropy:
7.8392  (probably packed)

Remove pal6.all.versions.tr22.v1.1.0-xiaoxing.exe - Powered by Reason Core Security