hacker facebook v.6.exe

The executable hacker facebook v.6.exe has been detected as malware by 17 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1829.mediafire.com.
Version:
0.0.0.0

MD5:
2d166b88cedfc21000c22504b98ac1d5

SHA-1:
46c7cbd0c3866ef80e963a027d48da35d1d9fa70

Scanner detections:
17 / 68

Status:
Malware

Analysis date:
5/21/2024 3:50:24 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.Generic
2016.03.25

Avira AntiVirus
TR/Crypt.Xpack.gckd
8.3.3.4

avast!
Win32:Malware-gen
2014.9-160325

AVG
BackDoor.Generic19
2017.0.2793

Baidu Antivirus
MSIL.Trojan.Injector
4.0.3.16325

Dr.Web
Trojan.DownLoader20.265
9.0.1.085

ESET NOD32
MSIL/Injector.JFP (variant)
10.13233

Fortinet FortiGate
W32/Generic.PX!tr
3/25/2016

F-Prot
W32/MSIL_Troj.FT.gen
v6.4.7.1.166

G Data
Win32.Trojan.Agent.GHZC6B
16.3.25

IKARUS anti.virus
Trojan.MSIL.Crypt
t3scan.2.0.9.0

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.460

Malwarebytes
Backdoor.NJRat
v2016.03.25.09

McAfee
BackDoor-FAXR!2D166B88CEDF
5600.6449

Qihoo 360 Security
QVM03.0.Malware.Gen
1.0.0.1120

Rising Antivirus
PE:Trojan.Confuser!1.A352 [F]
23.00.65.16323

Sophos
Mal/MSIL-PX
4.98

File size:
125 KB (128,000 bytes)

Product version:
0.0.0.0

Original file name:
Server.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
3/24/2016 8:13:04 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:2g1EK0Kw/fN1Ij4C9mLqdcimua1YE7Uiv:2HLID9Aqdpmuanv

Entry address:
0x2092E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
122.5 KB (125,440 bytes)

The file hacker facebook v.6.exe has been seen being distributed by the following URL.

Remove hacker facebook v.6.exe - Powered by Reason Core Security