aimbot.exe

The application aimbot.exe has been detected as a potentially unwanted program by 8 anti-malware scanners. The file has been seen being downloaded from dc344.4shared.com.
MD5:
be4e005e83d70e921d054a0cd2c9ca20

SHA-1:
afdd25acc138cdbe66a57deb26c0b9e4fc42a524

SHA-256:
839ddd6d026e826a664cd24481bfa81d51f4ffa106f53c0e47b96c1957fd24bf

Scanner detections:
8 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 11:41:31 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Riskware.Agent
7.1.1

AVG
Skodna.GameHack
2015.0.3500

Bkav FE
W32.Clod368.Trojan
1.3.0.4959

ESET NOD32
Win32/GameHack.KF
8.9697

K7 AntiVirus
Trojan
13.176.11806

Malwarebytes
Spyware.Password
v2014.04.18.11

McAfee
Artemis!BE4E005E83D7
5600.7156

Norman
Suspicious_Gen4.FISSS
11.20140418

File size:
8.5 KB (8,704 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
8/16/2011 3:52:26 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
96:OMw5rU0odJjQBy/CqUdG/hDLjUs+rVrgFBJoOSzruGABl6mUDCt3:p8rUHJ80Us+rlgFBJjSzruGQl6Na3

Entry address:
0x1692

Entry point:
E8, 82, 04, 00, 00, E9, B3, FD, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 48, 31, 40, 00, 89, 0D, 44, 31, 40, 00, 89, 15, 40, 31, 40, 00, 89, 1D, 3C, 31, 40, 00, 89, 35, 38, 31, 40, 00, 89, 3D, 34, 31, 40, 00, 66, 8C, 15, 60, 31, 40, 00, 66, 8C, 0D, 54, 31, 40, 00, 66, 8C, 1D, 30, 31, 40, 00, 66, 8C, 05, 2C, 31, 40, 00, 66, 8C, 25, 28, 31, 40, 00, 66, 8C, 2D, 24, 31, 40, 00, 9C, 8F, 05, 58, 31, 40, 00, 8B, 45, 00, A3, 4C, 31, 40, 00, 8B, 45, 04, A3, 50, 31, 40, 00, 8D, 45, 08, A3, 5C, 31, 40...
 
[+]

Entropy:
5.1995

Code size:
3.5 KB (3,584 bytes)

The file aimbot.exe has been seen being distributed by the following URL.

http://dc344.4shared.com/download/.../BorgHack.exe

Remove aimbot.exe - Powered by Reason Core Security