cheatengine65.exe

Cheat Engine 6.5

Cheat Engine

The application cheatengine65.exe, “Cheat Engine 6.5 Setup ” by Cheat Engine has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from lb.cdn.m6web.fr and multiple other hosts.
Publisher:
Cheat Engine   (signed by Cheat Engine)

Product:
Cheat Engine 6.5

Description:
Cheat Engine 6.5 Setup

Version:
6.5.0.3

MD5:
d88193ae121bb62005ce0137cf3613cf

SHA-1:
86b264e18424f0507732842c545860947366c81c

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
2/20/2018 12:50:47 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.CheatEngine.Bundler.Installer.Meta (L)
16.5.22.15

File size:
10.3 MB (10,842,040 bytes)

Product version:
6.5.0.3

Copyright:
Cheat Engine

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\Documents and Settings\{user}\My documents\downloads\cheatengine65.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
7/21/2015 9:34:23 PM

Valid to:
9/21/2016 6:08:43 PM

Subject:
E=dark_byte@hotmail.com, CN=Cheat Engine, O=Cheat Engine, L=Eindhoven, C=NL

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11216ED7C0BCCC414E44B35150DE3AB6F99D

File PE Metadata
Compilation timestamp:
6/20/1992 5:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:0H3Z1oeR2h/i3bO4/Ge3O3qy93aRUBSCwBpFooAUfxqDVtmWEc8:0X3oegh4bO4/5+p93a6BPCpFooAU50VQ

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Entropy:
7.9997

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file cheatengine65.exe has been seen being distributed by the following 50 URLs.

http://lb.cdn.m6web.fr/d/c/a/bdffaef578ab665c8c2f94a4664d9dd1/589607a8/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/a0c496cdbb3a0567e2f31ebc0047fa76/583bfa33/soft/.../cheat-engine_6-5_en_431019.exe

http://download2200.mediafire.com/5i65ab2ngiig/.../CheatEngine65.exe

http://lb.cdn.m6web.fr/d/c/a/f52898e5d4cba094ff82cc45a3581d85/5870fe7e/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/4d3b90b8aa9411b0fa3f57671310ea0c/5873a8c8/soft/.../cheat-engine_6-5_en_431019.exe

http://work-soft.net/.../download.php?id=Mzc1MDg=b3f1e9adec0bcde3c25c8efd5b7dad81&dfu=Mzc1MDg=b3f1e9adec0bcde3c25c8efd5b7dad81&sec_code=ad171&name=CheatEngine65.exe

http://lb.cdn.m6web.fr/d/c/a/b5904aa648430afcb554ff8e1387f440/58306be5/soft/.../cheat-engine_6-5_en_431019.exe

https://downloader.disk.yandex.ua/disk/1fc76586d31f6771e74702da1fee85524c77645eda240bed11855dc8a1d05679/588caff9/-l_w4dM_u1t0P7gVEOuToWww_kyCxrvhBZLM0ACmiPSb72Q49laS4UlecGvxweAl5ICxxJv3XorxesdmBXaZgw==?uid=0&filename=Cheat Engine 6.5 ?? ?????123 ?.exe&disposition=attachment&hash=fftPyyFOwMHaS5YgOQegPUR7CPaIKl/.../x-msdownload&fsize=10842040&hid=9e9496c230a9ee0391ebfaed592f3dde&media_type=executable&tknv=v2

http://s8.dosya.tc/en2.php?a=server/.../CheatEngine65.exe&b=0a719b666ada51bb2cdd3517f3903e97

http://lb.cdn.m6web.fr/d/c/a/ac6724f50cbb6d1db507166ef05e8f0b/5895ed45/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/bb728b44047dd050590934308d73e7d6/588d5d18/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/d6ab2f3923da7656d189980b6097fb0b/58650306/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/cac2d4f28ab4bb45fc074e4a23cdd8d7/586e6c2b/soft/.../cheat-engine_6-5_en_431019.exe

http://www.headquickrepository.com/Fgls7LoV3Os51Rw5hNml6 5LSqJaq8 u_9fMTRlF_Qltmn_c VJneTeESp8gj2eeqUjeGp2HHei1s5yA2N5j2NFKSZiqxEo5cNWw4FfcopMFu35a0MYQDOH92mKBzTdWZYlaRDNlFLoMtGgq6n7bLO_MZK49MVdW1Qw6hZScENZ4ru_qoSRjrzt6DDX02Kna74wZal0vdCNgAJe4Q4TGAK4peEcsRA==-Ow==

http://lb.cdn.m6web.fr/d/c/a/a9523c61b999fad59c408c1d2d9dd7a6/588b6d83/soft/.../cheat-engine_6-5_en_431019.exe

http://letmebit.com/download/redirect/448A59A5D1BE59F28BB3A097BC34D646/.../CheatEngine65.exe

http://i_mp3-es_cheat-engine-6-5.firedlopbura.com/crawled_soft/2/2/.../225331-687237-cheat-engine.exe

http://s6440.chomikuj.pl/File.aspx?e=m7_ZwvoEKqSMmMiHRXQKr43km8-pm4uUzxpBi9AcKrizEYkLbO3R81lRmIGceuIiys0W-cAnL4SoMsiSq9Lk_g9UCrZ5KtQJdyj1dWMgUOufB2wHLWPSk4cR_9qi95JtiuFVgK0ZrhNHfYnUaFwpSg&pv=2

http://work-soft.net/.../download.php?id=Mzc1MDg=b3f1e9adec0bcde3c25c8efd5b7dad81&dfu=Mzc1MDg=b3f1e9adec0bcde3c25c8efd5b7dad81&sec_code=a0971&name=CheatEngine65.exe

http://lb.cdn.m6web.fr/d/c/a/6fea322fdb417ffedc43fca3adf2d316/57ded341/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/e7cf38c0e4a6e0fa2986839f09d13aeb/579f0033/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/28fa250349c48d2782c2e8183b551c65/582a20ae/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/9e23450fd6a637130c399bf3ae9a4e02/575ac72f/soft/.../cheat-engine_6-5_en_431019.exe

http://download2200.mediafire.com/f7h8ueexq3pg/.../CheatEngine65.exe

http://lb.cdn.m6web.fr/d/c/a/b42ec85526631eb8c5c44f2e87d8caa9/579ba3c7/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/643b691474745fab0016c77c28df5209/575c0cbe/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/1bf27bf83d3236e16224e702838150d6/584d4d96/soft/.../cheat-engine_6-5_en_431019.exe

http://lb.cdn.m6web.fr/d/c/a/2c948e1fdb024c682b7e5eeb21ce6d2b/57532a81/soft/.../cheat-engine_6-5_en_431019.exe

http://s6440.chomikuj.pl/File.aspx?e=m7_ZwvoEKqSMmMiHRXQKrx04pZwHOWBq8_tXDo88TwRMa6Dd3IqIHPj1eZn0KnhvaDSlO0y3i52-rQ-GW2P1FO2CTr8z_fUw2J0HeOKL_23fni03Ja74FMd0smrjVA_IL3txKiSUtysT9_neB1ML9U8jb9k2beqrs5VJdEsvz2c&pv=2

https://doc-0g-50-docs.googleusercontent.com/docs/securesc/ha0ro937gcuc7l7deffksulhg5h7mbp1/cjt5qsqc9f6hfrtbvurtkfcs8t1lk7ru/1476028800000/12376584737258263302/.../0ByJUapQGHn0maFZ0ZkFJeVB4Qms?e=download

Latest 30 of 229 download URLs

Remove cheatengine65.exe - Powered by Reason Core Security