margonem sł hack full.exe

Margonem SŁ Hack

This is a setup program which is used to install the application. The file has been seen being downloaded from s6222.chomikuj.pl and multiple other hosts.
Product:
Margonem SŁ Hack

Version:
1.0.0.0

MD5:
0154917d5b950df71dafbb327e6d4930

SHA-1:
163329b9461f4869b380251ed3a788133c79db23

SHA-256:
d5458e7759e32d6f6845e967517a42bfef58387f141dc4a0ac6df89e4098d3ae

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/5/2024 8:42:29 AM UTC  (today)

File size:
2.2 MB (2,256,384 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013 Margonem SŁ Hack

Original file name:
MARGONEM SŁ HACK V 001.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\programs\margonem sł hack full.exe

File PE Metadata
Compilation timestamp:
12/11/2013 7:06:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:E6urJXRNu8Ek5nlcqmAfXymlx6cAikr2KGilt812I3Z0t:tsXWCBXf6YiWi

Entry address:
0x22781E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
2.1 MB (2,251,264 bytes)

The file margonem sł hack full.exe has been seen being distributed by the following 3 URLs.

http://s6222.chomikuj.pl/File.aspx?e=6Cm440dHtoLCJyMqlrUPQKn5xnkuJhfigCuPN8BcXeDrxj8agW7ryWzu7q6RU4XDxxEdGVAMfrK6pv-f6tkYfsgK9KrhwhLQggtQQGxOHqNlEdSsKhw1hniXsWFQ59yaShLODZozfHbDgyosBhM4N0oLY3h6AWTJ5o5CQ-JqPnY&pv=2

Scan margonem sł hack full.exe - Powered by Reason Core Security