burger_shop_2_setup.exe

The application burger_shop_2_setup.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a self-extracting archive and installer, however the file is not signed with an authenticode signature from a trusted source. The file has been seen being downloaded from games.playfin.com a web site host known to distribute potentially unwanted software operated by Download Admin.
MD5:
17e7429937d1ed6f4e83473da0686ebd

SHA-1:
8edfcfc48c8095803d93622b426373cf62d67ce1

SHA-256:
53256aecb492fc40927da71416e19b45e345944fd4c2b03769bbdf4d64484d27

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
5/17/2024 2:52:31 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.DownloadAdmin.Bundler.Installer.Meta (M)
16.6.11.9

File size:
875.7 KB (896,704 bytes)

File type:
Executable application (Win16 EXE)

Common path:
C:\users\{user}\downloads\burger_shop_2_setup.exe

File PE Metadata
Compilation timestamp:
7/10/2014 11:45:09 AM

OS version:
5.0

OS bitness:
Win16

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:WcMLKmtvPyHu7v8vm5m8y9pNg4W7HM8g3cN+2QHCb5:ViKmHyOzomHp7s8guQA

Entry address:
0xC822

Entry point:
E8, 3C, 05, 00, 00, E9, 57, FD, FF, FF, CC, CC, CC, CC, 51, 8D, 4C, 24, 04, 2B, C8, 1B, C0, F7, D0, 23, C8, 8B, C4, 25, 00, F0, FF, FF, 3B, C8, 72, 0A, 8B, C1, 59, 94, 8B, 00, 89, 04, 24, C3, 2D, 00, 10, 00, 00, 85, 00, EB, E9, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, A8, 4B, 41, 00, 89, 0D, A4, 4B, 41, 00, 89, 15, A0, 4B, 41, 00, 89, 1D, 9C, 4B, 41, 00, 89, 35, 98, 4B, 41, 00, 89, 3D, 94, 4B, 41, 00, 66, 8C, 15, C0, 4B, 41, 00, 66, 8C, 0D, B4, 4B, 41, 00, 66, 8C, 1D, 90, 4B, 41, 00, 66, 8C, 05, 8C...
 
[+]

Entropy:
7.9570  (probably packed)

Code size:
51.5 KB (52,736 bytes)

The file burger_shop_2_setup.exe has been seen being distributed by the following URL.

Remove burger_shop_2_setup.exe - Powered by Reason Core Security