Growtopia Hack Gem 1.9.exe

Growtopia Hack Gem 1.9

The executable Growtopia Hack Gem 1.9.exe has been detected as malware by 2 anti-virus scanners. The file has been seen being downloaded from dc722.4shared.com and multiple other hosts.
Publisher:
Microsoft*  (Invalid match)

Product:
Growtopia Hack Gem 1.9

Version:
1.0.0.0

MD5:
edc44e7aa58edae77c66995695b9ae1c

SHA-1:
f9018c2e47cca57709af5029a75442783658972e

SHA-256:
b68c6bc5cc3847cfbc9744cf7a8cd9537e1720a8382f3fa6ff54211d6f91f746

Scanner detections:
2 / 68

Status:
Malware

Analysis date:
4/19/2024 7:18:37 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
MSIL/PSW.Agent.NOP trojan
7.0.302.0

Microsoft Security Essentials
Threat.Undefined
1.215.2410.0

File size:
96.5 KB (98,816 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2016

Original file name:
Growtopia Hack Gem 1.9.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\growtopia hack gem 1.9.exe

File PE Metadata
Compilation timestamp:
3/11/2016 4:56:49 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:M/X3qkCKX28geat7Hp447JzT4evOg2fmr2CKX28geat7Hp447J:yakCE7geat7HDz772Or2CE7geat7HD

Entry address:
0x10F0E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6303

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
60 KB (61,440 bytes)

The file Growtopia Hack Gem 1.9.exe has been seen being distributed by the following 2 URLs.

Remove Growtopia Hack Gem 1.9.exe - Powered by Reason Core Security