3footninja.exe

FlashJester Jugglor Engine

3rd Eye Solutions

The executable 3footninja.exe, “FlashJester Jugglor Engine ” has been detected as malware by 6 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from www.gamegratis33.com and multiple other hosts.
Publisher:
3rd Eye Solutions

Product:
FlashJester Jugglor Engine

Description:
FlashJester Jugglor Engine

Version:
1.1.0.0

MD5:
2f3b6ca19755adb5ab1ada3299f59824

SHA-1:
1c8f24908286ccb8342d686e282040eb50da44bf

SHA-256:
6783c9f4cdc97421acace85b60770f3e813cb27954fdd7bbd75df31dfcefa366

Scanner detections:
6 / 68

Status:
Malware

Analysis date:
4/26/2024 11:07:06 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.PWS.Lmir
7.1.1

Bkav FE
W32.Clodaea.Trojan
1.3.0.4613

Comodo Security
TrojWare.Win32.GameThief.Lmir.kst
17478

Norman
Obfuscated.OI
11.20131223

nProtect
Trojan-PWS/W32.WebGame.1658682
13.12.20.01

VIPRE Antivirus
Trojan.Win32.Generic
24596

File size:
1.6 MB (1,658,682 bytes)

Product version:
1.1.0.0

Copyright:
© Copyright FlashJester Jugglor 1998-2002 by 3rd Eye Solutions Ltd

Original file name:
3 Foot Ninja - MiniClip.com.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\3footninja.exe

File PE Metadata
Compilation timestamp:
6/19/1992 10:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:KQ8MWNOxHxMMnUL6Vyb511clH4ObsD2ogdWTTU0H0W4YaecuvZ2h75UsKBgkdyD5:KQ8MWGHq0YybsDBgAsM4Ze9ZooBgaM

Entry address:
0x1CAA0

Entry point:
55, 8B, EC, 83, C4, F4, B8, E8, C9, 41, 00, E8, A8, 82, FE, FF, EB, 0A, E8, D9, 6F, FF, FF, E8, 70, 70, FF, FF, A1, FC, D7, 41, 00, 80, 38, 00, 75, EC, E8, 2D, 68, FE, FF, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
111 KB (113,664 bytes)

The file 3footninja.exe has been seen being distributed by the following 8 URLs.

http://www.gamegratis33.com/take_out.php/331b4e4496f06ff88e98334c3f3cbcf9/5269385969493265306e70674d512f586d6b2f7a526e2e7963412e774c432e3772/.../3-foot-ninja.exe

http://www.gamegratis33.com/take_out.php/94cdc454a5d5e6b107f5e20802ae34dc/5269385a6a48795733736f674c542f586d6b2f7a53792e7961442e764e332e3276/.../3-foot-ninja.exe

http://www.miniclip.com/games/.../3-foot-ninja.exe

http://miniclip.com/.../download.php?n=3-foot-ninja

https://www.miniclip.com/.../download.php?n=3-foot-ninja

temp:3footninja.exe

Remove 3footninja.exe - Powered by Reason Core Security