spiderman3.exe

The executable spiderman3.exe has been detected as malware by 4 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from www.puzzlecreator.com.
Version:
1.8.1.55

MD5:
918cd6d8f54dc8e3654299285e307d4a

SHA-1:
cae42754bb7036134a173424380172352a78f9a5

SHA-256:
d5f16972afd3261262e95ce9a023719b8a900fe4684cdfb3263c3453a5b1914a

Scanner detections:
4 / 68

Status:
Malware

Analysis date:
11/24/2024 1:34:02 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Parite
160414-2

ESET NOD32
Win32/Parite.B virus
8.0.319.0

F-Prot
W32/Parite.B
4.6.5.141

VIPRE Antivirus
Threat.46249
50750

File size:
1.7 MB (1,755,096 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\spiderman3.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:gFipuEMz6nSTHv0KzygafTtA0SKMCfrSzfcFl:gdEM+Sj7zIrTCCp

Entry address:
0x11D000

Entry point:
90, B9, 25, F4, 80, 00, BF, 1E, D0, 12, 00, 90, 68, 98, 05, 00, 00, 5A, 90, 90, 31, 0C, 3A, 90, 90, 83, EA, 04, 90, 75, F5, 90, 90, 90, CD, 89, 81, 00, 25, F4, 80, 00, 25, F4, 81, 00, 65, 7B, 91, 00, ED, E4, 98, 00, FD, E3, 98, 00, 25, 44, 82, 00, DA, 0B, 7F, FF, 0D, 3C, 92, 00, 29, 3D, 92, 00, 3F, 3D, 92, 00, 25, F4, 80, 00, 25, F4, 80, 00, 25, F4, 80, 00, 0D, 5A, 85, 00, 2F, 3D, 91, 00, 3D, 3D, 91, 00, 25, F4, 80, 00, 25, F4, 80, 00, 25, F4, 80, 00, 25, F4, 80, 00, 25, F4, 80, 00, 25, F4, 80, 00, 25, F4...
 
[+]

Code size:
356 KB (364,544 bytes)

The file spiderman3.exe has been seen being distributed by the following URL.

Remove spiderman3.exe - Powered by Reason Core Security