internet.exe

The application internet.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. The file has been seen being downloaded from internetmailru.cdnmail.ru.
MD5:
82c75232e05dd49322d949b5870290d4

SHA-1:
b2f7594f5c82586d234a5c8f77ebb5fe837b429f

SHA-256:
9622b1b820fb07c8ef4312ee17fc9f224076103b11e122d06cecd97981735991

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 9:29:28 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.MailRu
16.11.19.13

File size:
19.5 MB (20,455,131 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\internet.exe

File PE Metadata
Compilation timestamp:
2/7/2013 3:42:29 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
393216:ZG5krB038RiyqjMzYKGX8vPOmkAEbF69yCxL00J3wD8aDq6MjYpWcdNe7T:ZViyo83cAEbk9yC900JTcpHG

Entry address:
0x11A732

Entry point:
E8, FC, BC, 00, 00, E9, 89, FE, FF, FF, CC, CC, CC, CC, 83, 3D, 60, 1E, 59, 00, 00, 74, 2D, 55, 8B, EC, 83, EC, 08, 83, E4, F8, DD, 1C, 24, F2, 0F, 2C, 04, 24, C9, C3, 83, 3D, 60, 1E, 59, 00, 00, 74, 11, 83, EC, 04, D9, 3C, 24, 58, 66, 83, E0, 7F, 66, 83, F8, 7F, 74, D3, 55, 8B, EC, 83, EC, 20, 83, E4, F0, D9, C0, D9, 54, 24, 18, DF, 7C, 24, 10, DF, 6C, 24, 10, 8B, 54, 24, 18, 8B, 44, 24, 10, 85, C0, 74, 3C, DE, E9, 85, D2, 79, 1E, D9, 1C, 24, 8B, 0C, 24, 81, F1, 00, 00, 00, 80, 81, C1, FF, FF, FF, 7F, 83...
 
[+]

Code size:
1.3 MB (1,331,712 bytes)

The file internet.exe has been seen being distributed by the following URL.

Remove internet.exe - Powered by Reason Core Security