اختبارات شهرية وفصلية ووظائف منزلية خاصة بالسنة الثالثة ابتدائي في جميع المواد downloader.exe

The application اختبارات شهرية وفصلية ووظائف منزلية خاصة بالسنة الثالثة ابتدائي في جميع المواد downloader.exe has been detected as a potentially unwanted program by 5 anti-malware scanners. The program is a setup application that uses the Self-extracting archive installer, however the file is not signed with an authenticode signature from a trusted source. The file has been seen being downloaded from www.2downloadz.com.
MD5:
c34d02c0afc364ba793580fedb67b19d

SHA-1:
dfa12b3d7b5aca09a864e59bdc2d9f2d8a88b24f

SHA-256:
09743ad84ed242e06c8b22a20ee2bd1133a37d7e5dff160bce49ad02208e21f0

Scanner detections:
5 / 68

Status:
Potentially unwanted

Analysis date:
5/4/2024 8:57:19 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Rootkit-gen [Rtk]
160216-0

ESET NOD32
Win32/Packed.Autoit.H suspicious application
7.0.302.0

Kaspersky
not-a-virus:HEUR:Downloader.Win32.AutoIt
15.0.0.562

McAfee
Program.Artemis!81F651BD79F0
18.0.204.0

VIPRE Antivirus
Threat.4150696
47332

File size:
1.1 MB (1,104,910 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Self-extracting archive

Common path:
C:\users\{user}\downloads\اختبارات شهرية وفصلية ووظائف منزلية خاصة بالسنة الثالثة ابتدائي في جميع المواد downloader.exe

File PE Metadata
Compilation timestamp:
11/16/2013 7:26:10 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:yyDTSSVxmLuVTXd1QZNBhZIGj6b3n8PRbd2RTwQ:BnDP1kLhZdi3ncRZ2RkQ

Entry address:
0x1D6D8

Entry point:
E8, F0, 57, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 56, 8D, 45, 08, 50, 8B, F1, E8, 05, FD, FF, FF, C7, 06, E4, 81, 42, 00, 8B, C6, 5E, 5D, C2, 04, 00, C7, 01, E4, 81, 42, 00, E9, BA, FD, FF, FF, 8B, FF, 55, 8B, EC, 56, 8B, F1, C7, 06, E4, 81, 42, 00, E8, A7, FD, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, D5, C9, FF, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 56, 57, 8B, 7D, 08, 8B, 47, 04, 85, C0, 74, 47, 8D, 50, 08, 80, 3A, 00, 74, 3F, 8B, 75, 0C, 8B, 4E, 04, 3B, C1, 74, 14, 83, C1, 08...
 
[+]

Code size:
149.5 KB (153,088 bytes)

The file اختبارات شهرية وفصلية ووظائف منزلية خاصة بالسنة الثالثة ابتدائي في جميع المواد downloader.exe has been seen being distributed by the following URL.