You Got Served.exe

Facebook Account Cracker

ProSoftware

This is a setup program which is used to install the application. The file has been seen being downloaded from download1073.mediafire.com.
Publisher:
ProSoftware

Product:
Facebook Account Cracker

Description:
You Got Served

Version:
1.2.1.0

MD5:
41c87e4e29b2a46ad7551341e58763dc

SHA-1:
e55606789b72675935028ad85073f1548cedb108

SHA-256:
49a91cd6b7233b88919ab33a3cb794ae7074139e7470b15ca457fe8f811ecf5d

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/25/2024 5:21:26 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Dropper.Gen
8.3.2.4

Comodo Security
UnclassifiedMalware
23962

IKARUS anti.virus
Trojan-Dropper
t3scan.1.9.5.0

Qihoo 360 Security
HEUR/Malware.QVM03.Gen
1.0.0.1077

File size:
1024 KB (1,048,576 bytes)

Product version:
1.2.1.0

Copyright:
ProSoftware © 2012

Trademarks:
Prosoftware™

Original file name:
You Got Served.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\you got served.exe

File PE Metadata
Compilation timestamp:
4/14/2012 5:10:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:FS563DBZvvEbpjWF2qpvj+jQmHlJp9zG:TNZvvEbpjWF2qpvj+jQmHlJp9

Entry address:
0x5BDA

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 00, 00, 0C, 00, 00, 00, DC, 3B, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
15 KB (15,360 bytes)

The file You Got Served.exe has been seen being distributed by the following URL.

Scan You Got Served.exe - Powered by Reason Core Security