nintendo.3ds.emulator.v.1.10[megadownloadcore].exe

The executable nintendo.3ds.emulator.v.1.10[megadownloadcore].exe has been detected as malware by 2 anti-virus scanners. The file has been seen being downloaded from download1287.mediafire.com and multiple other hosts.
MD5:
04b5e1484ce6ad10d6384dd0b625ce42

SHA-1:
c1a08fbd8dfbc06864a51d18acba0a02f72e45f5

SHA-256:
8f672241d9a86efbf3129b6f9d4b9ee72ecd142210c23c3a9009a335edf98a43

Scanner detections:
2 / 68

Status:
Malware

Analysis date:
4/25/2024 10:55:26 AM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Banker.T.gen
v6.4.7.1.166

Reason Heuristics
Threat.Win.Reputation.IMP
15.11.14.22

File size:
17.9 MB (18,811,746 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
4/9/2012 2:27:27 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:9e6l72Opl5UEYn+FUJTey0DNOWn9dm9ku622IS3/oTXD2zJuQMiRKq63SNf2iukG:9+t+ITeMDM3VWPEZbtUUToep+N5

Entry address:
0x1C2BD4

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, D4, 87, 5B, 00, E8, 67, 8B, E4, FF, 8B, 1D, 6C, C7, 5C, 00, 8B, 03, E8, 9E, FC, F1, FF, 8B, 0D, 0C, CB, 5C, 00, 8B, 03, 8B, 15, 40, B0, 59, 00, E8, A3, FC, F1, FF, 8B, 0D, AC, CA, 5C, 00, 8B, 03, 8B, 15, 90, BB, 59, 00, E8, 90, FC, F1, FF, 8B, 0D, AC, C5, 5C, 00, 8B, 03, 8B, 15, 5C, FD, 52, 00, E8, 7D, FC, F1, FF, 8B, 0D, A8, C6, 5C, 00, 8B, 03, 8B, 15, F8, B6, 59, 00, E8, 6A, FC, F1, FF, 8B, 03, E8, B3, FD, F1, FF, 5B, E8, 85, 49, E4, FF, 90, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.5947

Developed / compiled with:
Microsoft Visual C++

Code size:
1.8 MB (1,842,176 bytes)

The file nintendo.3ds.emulator.v.1.10[megadownloadcore].exe has been seen being distributed by the following 5 URLs.

http://download1287.mediafire.com/d5v2d46ka6ig/.../Nintendo 3DS Emulator.exe