monopoly.exe

TikGames' Games

TikGames, LLC.

Publisher:
TikGames, LLC.

Product:
TikGames' Games

Description:
TikGames' Executable

Version:
1, 22, 8, 123

MD5:
fc8c08c7ec4889a4ba08662c497f8ea6

SHA-1:
b08bc6fb6bed5cf7d2b3bb0e54a482df5ce1227f

SHA-256:
de80e35762ddb46806df6d2685fe0ffb4d6c9df8eb6451ed7df0b403ffeaa1a5

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/19/2024 10:53:15 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.PWS.Magania
7.1.1

Bkav FE
W32.HfsAutoB
1.3.0.6185

Norman
Magania.DGW
11.20150107

Trend Micro House Call
Suspicious_GEN.F47V1028
7.2.7

File size:
1.7 MB (1,745,154 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright © 2003-2007 TikGames, LLC.

Original file name:
Game.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\gamehouse\monopoly here & now edition\monopoly.exe

File PE Metadata
Compilation timestamp:
4/10/2007 5:22:27 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
49152:SEiZFCNFT7tOu5faKlsMAbLKd4f4QtPwrZ2UOTc:Cq7tx5frlsMAbY4gQFwl2U

Entry address:
0x1AE000

Entry point:
68, 80, E0, 5A, 00, FF, 15, 90, E5, 5A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.7635

Code size:
237 KB (242,688 bytes)

The file monopoly.exe has been discovered within the following program.

Monopoly Here & Now Edition  by GameHouse, Inc.
Monopoly Here & Now Edition is a social casual video game distributed through the GameHouse/RealNetworks platform. The game uses the FunPass virtual currency and the initial download is initially a time-locked trial version.
www.gamehouse.com
4% remove it
 
Powered by Should I Remove It?

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to 195.34.13.149.zylom.net  (149.13.34.195:80)

Scan monopoly.exe - Powered by Reason Core Security