GUN Blood Hack v.1.7.exe

Project-OS.org

The executable GUN Blood Hack v.1.7.exe has been detected as malware by 5 anti-virus scanners. The file has been seen being downloaded from download1984.mediafire.com.
Publisher:
Project-OS.org

Version:
1.0.4899.28050

MD5:
813c8dc0bf06ca201b30fc95bb5a3b3b

SHA-1:
a98aca9846e579fcb930509e6be66b678007d6cc

SHA-256:
186c70c3066ad51063dd54559524ec4a7a16757eee431845cde5fe3084b73c81

Scanner detections:
5 / 68

Status:
Malware

Analysis date:
4/26/2024 11:08:30 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.301067
5821840

Emsisoft Anti-Malware
Gen:Variant.Kazy.301067
10.0.0.5366

ESET NOD32
MSIL/Surveyer.L trojan
7.0.302.0

McAfee
Trojan.Artemis!813C8DC0BF06
18.0.204.0

Norman
Gen:Variant.Kazy.301067
17.12.2015 06:34:11

File size:
2.2 MB (2,284,544 bytes)

Product version:
1.0.4899.28050

Original file name:
GUN Blood Hack v.1.7.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\gun blood hack v.1.7.exe

File PE Metadata
Compilation timestamp:
5/31/2013 10:14:04 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:z/aHlTBDCwhp/+my6h5a58GkhfjyVDAOT57fmfl1Q:z/a1VUMhW/Af

Entry address:
0x22C37E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.2360

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
2.2 MB (2,270,208 bytes)

The file GUN Blood Hack v.1.7.exe has been seen being distributed by the following URL.

Remove GUN Blood Hack v.1.7.exe - Powered by Reason Core Security