Plants vs Zombies Garden Warfare Skidrow.exe

WindowsApplication1

The executable Plants vs Zombies Garden Warfare Skidrow.exe has been detected as malware by 23 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from www.goourl.eu.
Publisher:
Microsoft*  (Invalid match)

Product:
WindowsApplication1

Version:
1.0.0.0

MD5:
31535f9a8f697ad50e18c7b74692150e

SHA-1:
819a813e73823325071cd8af2e0a20aa59350621

SHA-256:
7bdeb48a575da9c8e43393ecef6c120a72aad85a7d4f12419ff1b31cb4ee0aa0

Scanner detections:
23 / 68

Status:
Malware

Analysis date:
2/25/2025 1:17:28 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.2180074
362

Agnitum Outpost
Trojan.Surveyer
7.1.1

Avira AntiVirus
TR/Surveyer.4546560
8.3.1.6

avast!
Win32:Malware-gen
2014.9-160207

AVG
MSIL7
2017.0.2840

Baidu Antivirus
Trojan.MSIL.Surveyer
4.0.3.1627

Bitdefender
Trojan.GenericKD.2180074
1.0.20.190

Comodo Security
UnclassifiedMalware
22203

ESET NOD32
MSIL/Surveyer.BN (variant)
10.11665

F-Secure
Trojan.GenericKD.2180074
11.2016-07-02_1

G Data
Trojan.GenericKD.2180074
16.2.25

IKARUS anti.virus
Trojan.MSIL.Surveyer
t3scan.1.8.9.0

K7 AntiVirus
Trojan
13.204.15982

McAfee
Artemis!31535F9A8F69
5600.6496

MicroWorld eScan
Trojan.GenericKD.2180074
17.0.0.114

NANO AntiVirus
Trojan.Win32.Surveyer.dozgmw
0.30.24.1636

Norman
Suspicious_Gen4.HZLOS
11.20160207

nProtect
Trojan.GenericKD.2180074
15.05.21.01

Panda Antivirus
Trj/CI.A
16.02.07.07

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

Trend Micro House Call
TROJ_GEN.R02SC0EC315
7.2.38

Trend Micro
TROJ_GEN.R02SC0EC315
10.465.07

VIPRE Antivirus
Trojan.Win32.Generic
40440

File size:
4.3 MB (4,546,560 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2015

Original file name:
Plants vs Zombies Garden Warfare Skidrow.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\Pictures\pvz\plants vs zombies garden warfare skidrow.exe

File PE Metadata
Compilation timestamp:
2/7/2015 1:02:38 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
98304:fGpSU7k3/Htj66ylxbpSStGJylxbpSStnU:fGpSftu64NphUJ4Nphp

Entry address:
0x405B1E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
4 MB (4,209,664 bytes)

The file Plants vs Zombies Garden Warfare Skidrow.exe has been seen being distributed by the following URL.

Remove Plants vs Zombies Garden Warfare Skidrow.exe - Powered by Reason Core Security