google change color.exe

The executable google change color.exe has been detected as malware by 12 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1686.mediafire.com.
MD5:
100b7b851e9a1aff705500874ede2eb8

SHA-1:
5f2e2d1ca9466369a9944f885b6559179d4e8559

SHA-256:
d2517ea4d19d492903c9933b7d2cc252adb98292e2b85b7ef6d1a14fc5ad7366

Scanner detections:
12 / 68

Status:
Malware

Analysis date:
4/26/2024 9:37:32 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Graftor.1163
926

AhnLab V3 Security
Trojan/Win32.HDC
2014.07.24

Avira AntiVirus
BDS/Vertex.A
7.11.30.172

AVG
Trojan horse Agent_r.BDU
2014.0.3986

Bitdefender
Gen:Variant.Graftor.1163
1.0.20.1025

Dr.Web
BackDoor.Vertex.25
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Graftor.1163
8.14.07.24.12

F-Prot
W32/Dusvext.A.gen!Eldorado (generic, damaged, not disinfectable)
4.6.5.141

F-Secure
Gen:Variant.Graftor.1163
11.2014-24-07_5

G Data
Gen:Variant.Graftor.1163
14.7.24

MicroWorld eScan
Gen:Variant.Graftor.1163
15.0.0.615

Norman
Vertex.A
11.20140724

File size:
39.7 KB (40,656 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\google change color.exe

File PE Metadata
Compilation timestamp:
6/20/2011 3:05:05 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
768:Q5AJODf2zn93xM6OOfPRYryo6+KaqXyfcwkS+j9Blh:QOsD2zn93xMDkPRiyoUVwkTXlh

Entry address:
0xAF4A

Code size:
107.5 KB (110,080 bytes)

The file google change color.exe has been seen being distributed by the following URL.

Remove google change color.exe - Powered by Reason Core Security