mysterysolitaire.exe

The executable mysterysolitaire.exe has been detected as malware by 20 anti-virus scanners.
MD5:
ba9f8e7980b242d9a38def97997cb1b2

SHA-1:
4ed7e912e9140cf067192552a824fd085345e62a

SHA-256:
234021b3c917df78a4758dc46bce7aceee9624beb4561ea97e98fa9d8e45c2e3

Scanner detections:
20 / 68

Status:
Malware

Analysis date:
4/24/2024 9:15:18 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-Trojan/Agent.258048.BE
5.0.

Avira AntiVirus
TR/Dldr.Agent.cina
7.9.1.70

Emsisoft A-Squared
Trojan-Downloader.Agent2!IK
4.5.0.41

avast!
Win32:Trojan-gen
2014.9-140729

Comodo Security
TrojWare.Win32.TrojanDownloader.Agent.cina
2970

Dr.Web
Trojan.DownLoad.55057
9.0.1.0210

ESET NOD32
Win32/TrojanDownloader.Agent (variant)
8.4615

Fortinet FortiGate
W32/Agent.CINA!tr.dldr
7/29/2014

G Data
Win32:Trojan-gen
14.7.19

IKARUS anti.virus
Trojan-Downloader.Agent2
t3scan.1.1.74.0

K7 AntiVirus
Trojan-Downloader.Win32.Agent.cina
13.7.10.898

Kaspersky
Trojan-Downloader.Win32.Agent
14.0.0.3486

McAfee
Generic Downloader.x!bow
5600.7054

Norman
W32/Agent.PDRE
11.20140729

nProtect
Trojan-Downloader/W32.Agent.393216.H
2009.1.8.0

Panda Antivirus
Trj/CI.A
14.07.29.09

Prevx
Medium Risk Malware Downloader
3.0

Quick Heal
TrojanDownloader.Agent.cina
7.14.10.00

Rising Antivirus
Trojan.Win32.Generic.51EF3CBC
23.00.65.14727

Trend Micro
TROJ_DLOADE.BZL
10.465.29

File size:
384 KB (393,216 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\mystery solitaire secret island\mysterysolitaire.exe

File PE Metadata
Compilation timestamp:
8/30/2006 5:51:23 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:BepsyV9W8hHKzpfu85zs0LLBDSdfx0on/Iutj4Paps4lL2XpGSmPYlU2t2QA/:gSyzW8hqzZxEdfxfN2apflL2yAe29A/

Entry address:
0x1D6CF

Entry point:
55, 8B, EC, 6A, FF, 68, F0, B6, 42, 00, 68, E8, 19, 42, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, A4, 91, 42, 00, A3, 30, 75, 43, 00, 0F, B6, CC, 89, 0D, 3C, 75, 43, 00, 25, FF, 00, 00, 00, A3, 38, 75, 43, 00, C1, E0, 08, 03, C1, A3, 34, 75, 43, 00, 0F, B7, 05, 32, 75, 43, 00, A3, 30, 75, 43, 00, 6A, 01, E8, BA, 2F, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, E7, 2B, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33...
 
[+]

Entropy:
7.1574

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
160 KB (163,840 bytes)

Remove mysterysolitaire.exe - Powered by Reason Core Security