teleport hack.exe

MD5:
91386dd9007dd7144cecd1a487e73cd8

SHA-1:
1d80fbcc9fa57a6e941ae156086eb623692fe450

SHA-256:
67a71dfb16a950e0103d2fbd3a1a280477495714499b2adb9048dabc11bf19fa

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/23/2024 10:21:37 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Trojan.DownLoader17.50961
9.0.1.0364

IKARUS anti.virus
Trojan.Win32.Injector
t3scan.1.9.5.0

McAfee
Artemis!91386DD9007D
5600.6535

Qihoo 360 Security
HEUR/QVM20.1.Malware.Gen
1.0.0.1077

File size:
1.7 MB (1,740,287 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
11/15/2015 4:14:04 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.24

CTPH (ssdeep):
24576:4aYjEHAi6CrevwIg1UO0o3dKB/HlAfIoW3h3VuQ5rMtb9:8XCrLI9lto+Mtb9

Entry address:
0x14E0

Entry point:
83, EC, 0C, C7, 05, 38, 20, 49, 00, 00, 00, 00, 00, E8, EE, C4, 00, 00, 83, C4, 0C, E9, 86, FC, FF, FF, 90, 90, 90, 90, 90, 90, 8D, 4C, 24, 04, 83, E4, F0, FF, 71, FC, 55, 89, E5, 51, 81, EC, C4, 00, 00, 00, E8, A7, C4, 00, 00, C7, 44, 24, 04, 00, 90, 48, 00, C7, 04, 24, 00, 00, 00, 00, A1, 08, 35, 49, 00, FF, D0, 83, EC, 08, 89, 45, F4, EB, 5E, C7, 44, 24, 04, 0E, 90, 48, 00, C7, 04, 24, 40, 81, 48, 00, E8, 15, A2, 07, 00, C7, 04, 24, 70, 98, 47, 00, 89, C1, E8, 57, 03, 05, 00, 83, EC, 04, C7, 44, 24, 04...
 
[+]

Entropy:
5.8856

Code size:
513 KB (525,312 bytes)

The file teleport hack.exe has been seen being distributed by the following 6 URLs.

http://download1956.mediafire.com/i3vo7e79loqg/.../Teleport Hack.exe

http://download1817.mediafire.com/s82dym6b4vog/.../Teleport Hack.exe

Scan teleport hack.exe - Powered by Reason Core Security