صور مراتي الخاصة المتحركه.exe

The executable صور مراتي الخاصة المتحركه.exe has been detected as malware by 16 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from dc209.gulfup.com.
MD5:
3b31e73072df5e8e019a0c6271d1a17d

SHA-1:
b7811b6f201aab654438a3b7471cb4b38ef328ee

SHA-256:
5c37af612c163c59b3cc6dac00209481ef0f9059054a7d1d3af827c169ec1bef

Scanner detections:
16 / 68

Status:
Malware

Analysis date:
4/26/2024 6:24:14 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Barys.20644
1026

AhnLab V3 Security
Trojan/Win32.Generic
14.04.14

avast!
MSIL:Dropper-AAE [Drp]
2014.9-140414

Bitdefender
Gen:Variant.Barys.20644
1.0.20.520

Emsisoft Anti-Malware
Gen:Variant.Barys.20644
8.14.04.14.02

ESET NOD32
MSIL/Bladabindi (variant)
8.9658

Fortinet FortiGate
MSIL/Bladabindi.F!tr
4/14/2014

F-Secure
Gen:Variant.Barys.20644
11.2014-14-04_2

G Data
Gen:Variant.Barys.20644
14.4.24

IKARUS anti.virus
Trojan.Msil
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.176.11711

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.4017

Microsoft Security Essentials
Backdoor:MSIL/Bladabindi.B
1.10401

MicroWorld eScan
Gen:Variant.Barys.20644
15.0.0.312

Rising Antivirus
PE:Backdoor.MSIL.Bladabindi!1.9DE6
23.00.65.14412

VIPRE Antivirus
Backdoor.MSIL.Bladabindi.a
28186

File size:
74.5 KB (76,288 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\??? ????? ?????? ????????.exe

File PE Metadata
Compilation timestamp:
3/31/2014 1:31:57 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:25woYtibzJjVirU8jYpy8b4ZT6jshezcSLl/Zl0LtHT0ZbXC6xOA82qLNm+N+9g:22oYtISrU8cpApeBMHIZbS0OA8F9

Entry address:
0x140C8

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
72.5 KB (74,240 bytes)

The file صور مراتي الخاصة المتحركه.exe has been seen being distributed by the following URL.