ereve.exe

Ereve Client

Ereve

The executable ereve.exe has been detected as malware by 11 anti-virus scanners. This is a setup program which is used to install the application. This file is typically installed with the program MapleStory by Wizet. The file has been seen being downloaded from luna.ereve.net.
Publisher:
Ereve

Product:
Ereve Client

Description:
Ereve

Version:
1.0.3.0

MD5:
c5efa2be1ac6cc4eb227064662767995

SHA-1:
7bdd5a5e2d6759d446ed25d2415bc51cf96fb486

SHA-256:
de24c231436b0303caed82408abd8463ca6a6afa6bd139649b9d93140e5222b4

Scanner detections:
11 / 68

Status:
Malware

Analysis date:
4/18/2024 10:18:52 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.1486965
1112

Bitdefender
Trojan.GenericKD.1486965
1.0.20.90

Emsisoft Anti-Malware
Trojan.GenericKD.1486965
8.14.01.18.02

F-Secure
Trojan.GenericKD.1486965
11.2014-18-01_7

G Data
Trojan.GenericKD.1486965
14.1.24

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.2.2.29

McAfee
Artemis!C5EFA2BE1AC6
5600.7246

MicroWorld eScan
Trojan.GenericKD.1486965
15.0.0.54

nProtect
Trojan.GenericKD.1486965
14.01.16.02

Panda Antivirus
Suspicious file
14.01.18.02

Trend Micro House Call
TROJ_GEN.F47V0106
7.2.18

File size:
2.7 MB (2,860,544 bytes)

Product version:
1.0.3.0

Copyright:
Copyright © Ereve 2013-2014

Trademarks:
Ereve 2013-2014

Original file name:
Redirector.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
1/5/2014 3:30:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:vQaSoyNSSagGYD0nf0cri7xrCoSGBcm0Z+Zs8xcdbmf9TEwyk/Hu:vQXagAdruwIJZs8xMy9Tbfu

Entry address:
0x2B6652

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9479

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
2.7 MB (2,836,480 bytes)

The file ereve.exe has been discovered within the following program.

MapleStory  by Wizet
MapleStory is a free-to-play, 2D, side-scrolling massively multiplayer online role-playing game, developed by the South Korean company Wizet.
maplestory.nexon.net
About 6% of users remove it
 
Powered by Should I Remove It?

The file ereve.exe has been seen being distributed by the following URL.

Remove ereve.exe - Powered by Reason Core Security