marketland v.22_32bit.exe

The executable marketland v.22_32bit.exe has been detected as malware by 7 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from d8.usercdn.com.
MD5:
a390dcc8a4c4f44a035c6b68b3742cb6

SHA-1:
1c4ee7b3854dba9b4106e013470fec3a77b84750

SHA-256:
c18f1ca23c6dff936160d3ee168ceb450abcb2d55576c63e8554cb7c374b64d1

Scanner detections:
7 / 68

Status:
Malware

Analysis date:
5/21/2024 5:36:19 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
HackTool.CheatEngine
7.1.1

avast!
Win32:Malware-gen
2014.9-160223

ESET NOD32
Win32/HackTool.CheatEngine.AF potentially unsafe (variant)
10.12837

Fortinet FortiGate
W32/Generic.AC.1569906
2/23/2016

F-Prot
W32/CheatEngine.B.gen
v6.4.7.1.166

Malwarebytes
HackTool.CheatEngine
v2016.02.23.10

Qihoo 360 Security
HEUR/QVM41.1.Malware.Gen
1.0.0.1077

File size:
3.6 MB (3,818,472 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\marketland v.22_32bit.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
98304:meiGogtN54QvTgck5UN0xUwYiSjhPT3P6NLBO:meoq9vTgv5UN0OdTUo

Entry point:
52, 61, 72, 21, 1A, 07, 00, CF, 90, 73, 00, 00, 0D, 00, 00, 00, 00, 00, 00, 00, DC, 35, 74, C0, 90, 3E, 00, 8F, 43, 3A, 00, 00, 46, 3D, 00, 02, 6C, 8A, 78, 0B, 4F, 6B, 22, 48, 1D, 33, 19, 00, 20, 00, 00, 00, 4D, 61, 72, 6B, 65, 74, 6C, 61, 6E, 64, 20, 56, 2E, 32, 32, 5F, 33, 32, 42, 69, 74, 2E, 45, 58, 45, 00, B0, CB, A4, 4D, 18, 1E, 55, 15, 0C, 89, 11, D8, 1E, 66, 6E, E5, DC, 93, B2, 17, 0B, B1, 24, 18, 24, 02, D4, 82, 8B, 05, C8, B0, 16, 46, C8, B6, 04, 90, 82, 90, 2E, 11, 24, 22, 04, 07, 30, 06, DB, 45...
 
[+]

Entropy:
7.9991  (probably packed)

The file marketland v.22_32bit.exe has been seen being distributed by the following URL.

Remove marketland v.22_32bit.exe - Powered by Reason Core Security