MemoryTools.exe

MemoryTools

Product:
MemoryTools

Version:
1.0.0.0

MD5:
27c75ed5601f2476ead8206952b9623a

SHA-1:
61ed08889c15ff6b94d7ac72dc16ba7e7f7a6ac8

SHA-256:
baef3ffa64ae88c0b47268e067c9a2cd390a4279d04400d7a21d2b9250ab49a9

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/18/2024 1:53:48 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
W32/Virut.Gen
7.11.30.172

Sophos
Virus 'Mal/MsilInj-G'
5.23

File size:
168.5 KB (172,544 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
MemoryTools.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
12/30/2015 5:12:33 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:KI3L8G/iVjlJ39GOjzIa+4bl/DrQxDxDxDxDxDxDxDxDxDxDxDx75LsrJH1VNxNm:KIwG/iVjlJtjjzIa+DNNNNNNNNNNNNLh

Entry address:
0x27BBE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 58, 00, 00, 80, 10, 00, 00, 00, 70, 00, 00, 80, 18, 00, 00, 00, 88, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.1725

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
151 KB (154,624 bytes)

The file MemoryTools.exe has been seen being distributed by the following 23 URLs.

https://cdn.discordapp.com/attachments/240174344234467330/.../MemoryTools.exe

http://download1918.mediafire.com/lbwa1ulb4esg/.../memorytools.exe

https://onedrive.live.com/download.aspx?cid=F12E372E28A28EED&authKey=!ABvWtqpIUrNXqjg&resid=F12E372E28A28EED!584&ithint=.exe

http://ytblueflare.weebly.com/uploads/9/6/2/1/.../memorytools.exe

http://download1432.mediafire.com/qnbqjwjeecig/.../MemoryTools.exe

http://download1941.mediafire.com/o0uvjewv3n8g/.../MemoryTools.exe

https://www.dropbox.com/sh/nwtatl7sq9gbiln/.../MemoryTools.exe

http://download1941.mediafire.com/dlo0mqnpcgpg/.../MemoryTools.exe

http://download1941.mediafire.com/49a2m7sqjd3g/.../MemoryTools.exe

http://www.filedropper.com/.../filedownload.php?id=memorytools_6

http://download1941.mediafire.com/rc62alt7nzdg/.../MemoryTools.exe

Scan MemoryTools.exe - Powered by Reason Core Security