SAMP_Recolorer.exe

SAMP_Recolorer

MazaHACKa

Publisher:
MazaHACKa

Product:
SAMP_Recolorer

Description:
SAMP Recolorer

Version:
1.2.0.0

MD5:
aa2c55b3b9b6b5ad31147004de69aedb

SHA-1:
1b34a792981144b996b034dce083305b75bcfce9

SHA-256:
827495f96f35f76cec18288e45b58e4a42472d57a51255f76e79a3444980ceb7

Scanner detections:
9 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/23/2024 10:21:43 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.538003
400

Arcabit
Trojan.Kazy.D83593
1.0.0.629

Bitdefender
Gen:Variant.Kazy.538003
1.0.20.1825

Emsisoft Anti-Malware
Gen:Variant.Kazy.538003
8.15.12.31.12

F-Secure
Gen:Variant.Kazy.538003
11.2015-31-12_5

G Data
Gen:Variant.Kazy.538003
15.12.25

McAfee
Artemis!AA2C55B3B9B6
5600.6534

MicroWorld eScan
Gen:Variant.Kazy.538003
16.0.0.1095

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
23.00.65.151229

File size:
841 KB (861,184 bytes)

Product version:
1.2.0.0

Copyright:
Copyright © MazaHACKa 2013

Original file name:
SAMP_Recolorer.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\samp_recolorer.exe

File PE Metadata
Compilation timestamp:
9/10/2015 10:21:50 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:6I4TT3CR9UNYdFc3+7QmHv7vgGRvO5Akhuh8iJz3avsge82um4TT3CR9UNYdFc3y:6I4g9tpbfkIh8AGm8nm4g9tpbfkIh8

Entry address:
0x763BE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 98, 00, 00, 80, 10, 00, 00, 00, B0, 00, 00, 80, 18, 00, 00, 00, C8, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.0855

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
465 KB (476,160 bytes)

The file SAMP_Recolorer.exe has been seen being distributed by the following URL.

Scan SAMP_Recolorer.exe - Powered by Reason Core Security