Wolfteam_Kilan_Ws_LIk_Hile.exe

Wolfteam Kılan Ws Lİk Hile

The application Wolfteam_Kilan_Ws_LIk_Hile.exe has been detected as a potentially unwanted program by 7 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from s6.dosya.tc.
Product:
Wolfteam Kılan Ws Lİk Hile

Version:
1.0.0.0

MD5:
026f60cd13f511e23f3f90a6d2805f95

SHA-1:
8fc42b44c38e3b0b13778aacdf3f4c5fe186a9b6

SHA-256:
15f39f8089fb3d587b5bbec04eee6b32766dc101a1446d5faa221d15911addc7

Scanner detections:
7 / 68

Status:
Potentially unwanted

Analysis date:
12/27/2024 7:01:28 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Riskware.Agent
7.1.1

Baidu Antivirus
Hacktool.MSIL.GameHack
4.0.3.16630

ESET NOD32
MSIL/GameHack.MD potentially unsafe (variant)
10.12296

McAfee
Artemis!026F60CD13F5
5600.6352

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

Rising Antivirus
PE:Malware.RDM.29!5.23[F1]
23.00.65.16628

VIPRE Antivirus
Trojan.Win32.Generic
44022

File size:
43 KB (44,032 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
Wolfteam Kılan Ws Lİk Hile.exe

File type:
Executable application (Win32 EXE)

Language:
Turkish (Turkey)

Common path:
C:\users\{user}\downloads\wolfteam_kilan_ws_lik_hile.exe

File PE Metadata
Compilation timestamp:
8/3/2015 9:05:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:fMIaJDph1VlZ2KGZkq4DylnUf13pxoX1Xi333333333333333byS3SA2Tn22XPRo:UIAH2KGZb4DylniFpxXR32fVilsYvxGk

Entry address:
0xB36E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
37 KB (37,888 bytes)

The file Wolfteam_Kilan_Ws_LIk_Hile.exe has been seen being distributed by the following URL.

Remove Wolfteam_Kilan_Ws_LIk_Hile.exe - Powered by Reason Core Security