forexkiller3.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from dc176.4shared.com.
Description:
Forex Signal Software

Version:
3.32.1.1

MD5:
6fb90155ab60d42e9d2b3246bd50f9df

SHA-1:
726461e243964b2f97f60735deec42a039100677

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
8/12/2025 11:56:55 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/PECompact
7.1.1

File size:
887 KB (908,288 bytes)

Product version:
3.32

File type:
Executable application (Win32 EXE)

Language:
orosz

Common path:
C:\Program Files\forex killer v.3.32 by softfulldownload\forexkiller3.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:6TM6Y3erPrU78M4WSKRyFrzHYP0rlecfVt0h:6TAwgQVWSayFrzHE0rlhfVy

Entry address:
0x1000

Entry point:
B8, E4, 37, B0, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 8E, 13, FC, C6, 1E, 62, 9A, A2, 13, 5F, AC, 93, F6, DA, 0E, 4A, 3E, 62, 1D, 64, 84, 49, A8, 0C, 99, B2, F5, 69, 35, D4, 52, AF, E7, 82, B9, EB, DF, 2D, 1B, DD, 5F, 55, ED, BE, 51, CB, BA, 79, 06, CE, B9, 06, C3, 57, 03, D8, 92, 66, 83, 3E, 63, CF, BF, AD, A3, E9, EF, F3, 52, AE, 0A, A5, DF, 59, 93, 9E, CE, E4, D8, D0, 15, 4F, 3E, 32, F6, F9, 2A, 83, D0, 95, A4, 50, B5...
 
[+]

Packer / compiler:
PECompact v2

Code size:
1.3 MB (1,334,784 bytes)

The file forexkiller3.exe has been seen being distributed by the following URL.

Scan forexkiller3.exe - Powered by Reason Core Security