unitydownloadassistant-5.3.5f1.exe

The executable unitydownloadassistant-5.3.5f1.exe has been detected as malware by 5 anti-virus scanners. The file has been seen being downloaded from netstorage.unity3d.com.
MD5:
b93fe7cd217440be77aef66a2fad215d

SHA-1:
cdb2bb14faaba609d978f07d74a62e86fc576394

SHA-256:
9601eef3947e0cdf265334464f74baa45b6add04d7fc39d36ad3040c0efc77ce

Scanner detections:
5 / 68

Status:
Malware

Analysis date:
11/23/2024 7:48:35 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Kukacka
160518-2

AVG
Win32/Sality
2015.0.4604

ESET NOD32
Win32/Sality.NBA virus
8.0.319.0

F-Prot
W32/Sality.E.gen
4.6.5.141

Microsoft Security Essentials
Threat.Undefined
1.225.1590.0

File size:
725.4 KB (742,816 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\unitydownloadassistant-5.3.5f1.exe

File PE Metadata
Compilation timestamp:
10/13/2010 1:15:26 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:KwgsyyMeK33nG5OfBRtCi7sRftMgBUSfIU5MBmqwrCGw/w3m2/Obz1:Xgsc4oB4eg3mYs1

Entry address:
0x33EF

Entry point:
60, 25, 25, C3, 8E, 58, F2, 4F, 78, 08, 39, C1, 8D, 35, CC, 15, 81, 75, 68, 8D, BE, EE, 00, 50, F2, F6, C5, A7, F6, C1, EE, 70, 04, 8A, F6, 88, CA, 8D, 0D, E0, 71, DD, A3, 88, C2, F2, E8, 2D, 00, 00, 00, 8A, D4, 0F, BE, EB, 0F, AF, C8, 8A, E4, FE, CF, F3, 1A, CB, 69, D7, 76, 5C, A8, C6, 0F, AF, C8, 81, C6, 78, BF, 00, 00, 8D, 0D, CD, 45, 6D, 72, 39, FA, F2, 81, C6, 70, 0A, 00, 00, 5B, 84, C7, 86, CC, 84, FB, 21, C0, 0F, B7, F0, EB, 06, FE, C0, 40, F6, C7, 17, 22, C6, EB, 01, 4D, 0F, AF, EA, C7, C5, BC, 93...
 
[+]

Entropy:
4.9425

Code size:
25 KB (25,600 bytes)

The file unitydownloadassistant-5.3.5f1.exe has been seen being distributed by the following URL.

Remove unitydownloadassistant-5.3.5f1.exe - Powered by Reason Core Security