S4 League AP and PEN Hack.exe

S4 League AP and PEN Hack

The executable S4 League AP and PEN Hack.exe has been detected as malware by 5 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from dc208.2shared.com.
Publisher:
Microsoft*  (Invalid match)

Product:
S4 League AP and PEN Hack

Version:
1.0.0.0

MD5:
56d48cf3d9056189dbc7d52aa0255d29

SHA-1:
11f2f18929672382c62b1af5302269a6c7cc258b

SHA-256:
c2ac0a3301721e5bdac2e2802ce165ce6c176d4f1576c8895927067d40feca5d

Scanner detections:
5 / 68

Status:
Malware

Analysis date:
11/27/2024 4:55:08 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Dropper.Gen
7.11.97.100

Comodo Security
UnclassifiedMalware
16795

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.2.0.127

Norman
Agent.AKAIX
11.20160228

Panda Antivirus
Suspicious file
16.02.28.02

File size:
1 MB (1,097,216 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2012

Original file name:
S4 League AP and PEN Hack.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\s4 league ap and pen hack.exe

File PE Metadata
Compilation timestamp:
2/26/2012 12:59:11 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:k7zujP0w7stVjPFGLyc4VmnJKCFIDfU/IE+Pz+lQLFotL2+jfU/:kPuT0AEVjbZVKYUgE+PzyQhWLFjU

Entry address:
0xF463E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
970 KB (993,280 bytes)

The file S4 League AP and PEN Hack.exe has been seen being distributed by the following URL.

Remove S4 League AP and PEN Hack.exe - Powered by Reason Core Security