Hack.exe

Reformation The

Drupe And

The application Hack.exe has been detected as a potentially unwanted program by 9 anti-malware scanners. This is a setup program which is used to install the application. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. The file has been seen being downloaded from applicationgrabb.net.
Publisher:
Drupe And

Product:
Reformation The

Description:
Plexus Not

Version:
3.6.5.9

MD5:
2739135d81d0ab7114d7361b577dd23f

SHA-1:
449668c030a2034dcfb6f0e61842bd74f61dfe46

SHA-256:
f589fb633277148916901d043d572e007bae62a9953352d9c6d3561730c7753e

Scanner detections:
9 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 5:38:53 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.16
890

AhnLab V3 Security
PUP/Win32.MultiPlug
2014.08.29

Bitdefender
Gen:Variant.Application.Bundler.16
1.0.20.1200

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.16
9.0.0.4324

ESET NOD32
Win32/AdWare.MultiPlug.BS (variant)
8.10331

F-Secure
Gen:Variant.Application.Bundler
11.2014-28-08_5

G Data
Gen:Variant.Application.Bundler.16
14.8.24

McAfee
MultiPlug
5600.7024

MicroWorld eScan
Gen:Variant.Application.Bundler.16
15.0.0.720

File size:
705.5 KB (722,432 bytes)

Product version:
1.7.6.4

Copyright:
All rights reserved for Drupe And LTD.

Original file name:
Hack.exe

File type:
Executable application (Win32 EXE)

Language:
English (United Kingdom)

Common path:
C:\users\{user}\downloads\hack.exe

File PE Metadata
Compilation timestamp:
9/10/2013 12:27:44 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:xAS4FW1b/7lX4xMdE+vK6wCoB4IyWH5cIiu5jKgx0x+hVIJ0MyNIsiFs:xv+W5xoxAE+dIJHBisqwImfNIsi

Entry address:
0x12167

Entry point:
E8, 8E, 3E, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, F0, FF, 41, 00, E8, D3, 12, 00, 00, E8, 5B, 40, 00, 00, 0F, B7, F0, 6A, 02, E8, 21, 3E, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, F0, 04, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Code size:
106 KB (108,544 bytes)

The file Hack.exe has been seen being distributed by the following URL.

Remove Hack.exe - Powered by Reason Core Security