license generator.exe

The executable license generator.exe has been detected as malware by 15 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1882.mediafire.com.
MD5:
a4829d4f676736d69435637723a7f7a6

SHA-1:
19b8824aea2d27a1ae7f0a1470df31dfb3f610b3

SHA-256:
179ad2311a494d3020cb157352a77200a49a12b9e3ad2cad7d894eaa3ed0b595

Scanner detections:
15 / 68

Status:
Malware

Analysis date:
4/27/2024 1:46:33 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.Dynamer
7.1.1

AhnLab V3 Security
Win-Trojan/Xema.variant
14.06.11

AVG
Generic18
2015.0.3447

Baidu Antivirus
Trojan.Win32.Generic18
4.0.3.14611

Bkav FE
HW32.TsCabk
1.3.0.4959

Fortinet FortiGate
W32/Dx.PCU!tr
6/11/2014

F-Prot
W32/MalwareF.AXAW
v6.4.7.1.166

IKARUS anti.virus
Trojan-Dropper.Win32.VB
t3scan.1.6.1.0

K7 AntiVirus
Riskware
13.176.11702

NANO AntiVirus
Trojan.Win32.EncPkCK.ltql
0.28.0.59048

Norman
Suspicious_Gen.RNCK
11.20140611

nProtect
Trojan/W32.Agent.459391
14.04.08.01

Sophos
Mal/Generic-L
4.98

VIPRE Antivirus
Trojan.Win32.Generic
28154

ViRobot
Trojan.Win32.A.Bodrik.199316
2011.4.7.4223

File size:
448.6 KB (459,391 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
7/12/2052 9:17:29 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

CTPH (ssdeep):
12288:grac/e2MMQzeJGSmV/OTG+UGJG++1VUCUya:gWc/mMQze4O3Rm1VUCUt

Entry address:
0x28BD3

Entry point:
E8, 00, 00, 00, 00, 60, E8, 4F, 00, 00, 00, 0F, 52, A2, 21, F4, 32, F9, 74, 67, 4F, B4, 58, 81, 5C, A2, B9, 2B, AC, 12, 5A, 81, 5D, C1, D5, 19, 8A, 74, 37, 15, A4, 75, C9, F6, A0, 24, 96, 37, 54, 56, 7D, D0, 0E, 28, 77, 48, FC, 30, 8B, A1, BF, D9, 15, 9F, 07, 44, 4F, A1, BF, D9, 15, 9F, 07, 44, 4F, E9, 3A, 6D, 00, 00, E9, 4E, 6D, 00, 00, E9, 49, 6D, 00, 00, E8, 6E, FB, FF, FF, CE, 01, 01, 00, 06, 9A, 00, 00, 74, 31, 3B, 39, F2, 9D, 11, 73, BE, 88, 54, 4B, BB, 4A, F1, 32, D0, 3F, F0, 07, 39, 01, C9, D2, 60...
 
[+]

Entropy:
7.9785

Packer / compiler:
MoleBox v2.0

The file license generator.exe has been seen being distributed by the following URL.

Remove license generator.exe - Powered by Reason Core Security