msi61916.exe

Flash game pularinazos lomij oli kasandra bo.

Flash

The application msi61916.exe has been detected as a potentially unwanted program by 3 anti-malware scanners.
Publisher:
Flash

Product:
Flash game pularinazos lomij oli kasandra bo.

Version:
2.00.0070

MD5:
8790256ad15c6167da71a66d771fafa6

SHA-1:
7ccb9d63d1ba7283e7407f95b9326295af2754a1

SHA-256:
001edb134fe693ed6c0892fa9d055164c6d18fa1bc8a0e561f16bc1ee126746f

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
5/1/2024 10:02:22 AM UTC  (today)

Scan engine
Detection
Engine version

Malwarebytes
Backdoor.Bot
v2014.04.26.11

Qihoo 360 Security
Malware.QVM03.Gen
1.0.0.1015

Reason Heuristics
PUP.Flash.Bundler
16.2.11.22

File size:
69.2 KB (70,829 bytes)

Product version:
2.00.0070

Trademarks:
Flash game pularinazos lomij oli kasandra bo.

Original file name:
Ju1a7a80a8d89g.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\msi61916.exe

File PE Metadata
Compilation timestamp:
4/25/2014 7:28:01 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
768:TpOIm57XopuJViHor9Ot5meQW1AOtXzj6ibDP0+B/Zfm0M7iG8tREvrOTKM68rb+:AX7XvFobttDj6ibtvMLoRKyWM6Sb6P

Entry address:
0x152C

Entry point:
68, FC, 17, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, B8, 77, 81, 82, 01, 57, 83, 4C, B8, 98, 89, 8B, 5C, 35, 34, BC, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 49, 6B, 6F, 43, 61, 70, 6F, 6C, 6C, 61, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 01, D5, 2B, 3C, 02, 04, 34, 37, 4E, B8, 12, E8, C0, C7, 59, 1A, FD, 6B, E5, 0B, 55, 9C, 2B, 1E, 44, A4, BA, 99, B3, 1D, 12, D4, C6, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
24 KB (24,576 bytes)

Remove msi61916.exe - Powered by Reason Core Security