cheatengine61.exe

The executable cheatengine61.exe has been detected as malware by 2 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from members.upc.nl.
MD5:
47cd6478d1eb924e569157b68fc3960f

SHA-1:
e4363edb0e1c57a846b60be074b664811a1ec114

SHA-256:
1c6dd55be6f2eb8c6e4332da867fff0a07ad3a85e8ac487e15304ac752111a14

Scanner detections:
2 / 68

Status:
Malware

Analysis date:
4/19/2024 2:47:36 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Suspicion: unknown virus
2015.0.3325

Reason Heuristics
Threat.Win.Reputation.IMP
14.10.11.7

File size:
48 KB (49,152 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
12/17/2010 11:14:12 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
768:crBH2Fs5IYrGbvQZyO2P9ZO1nIFuSyHmcT5Z0LhY2oZd57jBJoIZZZTLa05k:eV22Oc290IhyHmcT5ZKhYh3BJoIZZZTM

Entry address:
0x39AC

Entry point:
55, 89, E5, 57, 56, 53, 81, EC, 7C, 01, 00, 00, E8, 97, 46, 00, 00, 83, EC, 0C, 68, 01, 80, 00, 00, E8, 42, 43, 00, 00, 6A, 00, E8, AB, 46, 00, 00, 6A, 08, A3, 88, 4C, 42, 00, E8, B1, 28, 00, 00, 6A, 00, 68, 60, 01, 00, 00, A3, 38, 4D, 42, 00, 8D, 85, 90, FE, FF, FF, 50, 6A, 00, 68, A4, A2, 40, 00, E8, F0, 45, 00, 00, 83, EC, 0C, 68, A5, A2, 40, 00, 68, 68, 4D, 42, 00, E8, EF, 2A, 00, 00, 83, C4, 18, E8, FE, 42, 00, 00, 52, 52, 50, 68, 00, D0, 42, 00, E8, DA, 2A, 00, 00, 57, 6A, 00, E8, 39, 42, 00, 00, 83...
 
[+]

Code size:
28.5 KB (29,184 bytes)

The file cheatengine61.exe has been seen being distributed by the following URL.

Remove cheatengine61.exe - Powered by Reason Core Security