rato leve permanente - code master.exe

The executable rato leve permanente - code master.exe has been detected as malware by 8 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from fs04n5.sendspace.com and multiple other hosts.
MD5:
c851da323b5c28df4b720ab951547a3e

SHA-1:
cb17dd212135a5a6f56c81972a84b0c26c7fb566

SHA-256:
190294c7aeb93eb17fbc8e6a622729cb17cd7c52aa54baf594edfd47648057ad

Scanner detections:
8 / 68

Status:
Malware

Analysis date:
12/13/2018 10:22:36 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
HackTool.CheatEngine
7.1.1

Baidu Antivirus
HackTool.Win32.CheatEngine
4.0.3.15121

ESET NOD32
Win32/HackTool.CheatEngine.AF potentially unsafe (variant)
9.12560

Fortinet FortiGate
W32/Generic.AC.1569906
12/1/2015

F-Prot
W32/CheatEngine.B.gen
v6.4.7.1.166

Malwarebytes
HackTool.CheatEngine
v2015.12.01.01

McAfee
Artemis!C851DA323B5C
5600.6565

Qihoo 360 Security
HEUR/QVM41.2.Malware.Gen
1.0.0.1077

File size:
4.1 MB (4,279,296 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\rato leve permanente - code master.exe

File PE Metadata
Compilation timestamp:
6/28/2013 11:45:44 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:17590NsDG9MpYlhaEvUIOHefWAxFlDsVlM52iJBHhFOFYP9Hu:1v0NsDG9KSapHefWw1sclkmZu

Entry address:
0x15EB

Entry point:
E8, 1C, 1B, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 56, 8B, 75, 0C, 56, E8, AC, 27, 00, 00, 89, 45, 0C, 8B, 46, 0C, 59, A8, 82, 75, 17, E8, 6A, 03, 00, 00, C7, 00, 09, 00, 00, 00, 83, 4E, 0C, 20, 83, C8, FF, E9, 2F, 01, 00, 00, A8, 40, 74, 0D, E8, 4F, 03, 00, 00, C7, 00, 22, 00, 00, 00, EB, E3, 53, 33, DB, A8, 01, 74, 16, 89, 5E, 04, A8, 10, 0F, 84, 87, 00, 00, 00, 8B, 4E, 08, 83, E0, FE, 89, 0E, 89, 46, 0C, 8B, 46, 0C, 83, E0, EF, 83, C8, 02, 89, 46, 0C, 89, 5E, 04, 89, 5D, FC, A9, 0C, 01, 00...
 
[+]

Code size:
35.5 KB (36,352 bytes)

The file rato leve permanente - code master.exe has been seen being distributed by the following 50 URLs.

https://fs04n5.sendspace.com/dl/7505ff0380a048fd57ee688ab6ff1a25/586519d6055a6e8b/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n5.sendspace.com/dl/fef058acb74cd00345a96d04eec711a0/57dee6f87febe79f/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n5.sendspace.com/dl/3a36d93ce1f4aae5bc0bc38e6b1eb80e/5846fd900f2ec1bb/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n4.sendspace.com/dl/6bbf64a6b955b1bdc8ca2e27a6d8b2d8/586d81d807ef9605/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n2.sendspace.com/dl/68322565dee8f5c275cf004f2d198b64/586adf6724b1fb0b/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n5.sendspace.com/dl/81c9b7c1d68946dd98a6a42c465f2ea0/584b464327c5b460/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n2.sendspace.com/dl/090d4b656b9d25115ae07fdf64126696/589626463c9f4e82/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n3.sendspace.com/dl/8b7d63a472b7da4b668ad1ecb96cd79f/57b740732fde92cf/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n5.sendspace.com/dl/7d3fee0ca5dd63018ce93f83f985d811/589251f42967420e/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n3.sendspace.com/dl/c62a0066d0bb1a9e6bdfc1622cda838e/586557c54953ef47/.../Rato leve permanente - CODE MASTER.EXE

https://fs10n3.sendspace.com/dl/b783ebfe17e81cde9b7709eb627ba856/586ae5e21f2e4211/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n4.sendspace.com/dl/f7250ef9dc3169d94bfa7c9c0071ea35/581e89ed6574f750/.../Rato leve permanente - CODE MASTER.EXE

https://fs10n4.sendspace.com/dl/a12fad511011b81aa9eb0ea04570477a/585431eb32109a99/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n5.sendspace.com/dl/a6b02780594568032054372e504ab906/5802d3414b1297a3/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n5.sendspace.com/dl/50b931dbc06feeff001141ac8930fcc3/582e3f455b9a74d2/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n2.sendspace.com/dl/1c443c937d98fbba9fed69e7fc347c88/57e1465f42da4a98/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n3.sendspace.com/dl/49a335bbf0605e60b91b1737c5caf4fd/584e8cd121e97736/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n5.sendspace.com/dl/180a7c600394bfeef2408781490aa32a/57eed5304eb697d2/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n3.sendspace.com/dl/66a2d971cec3fe2d8b385d26b47c1fc7/581922a22023ad0b/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n2.sendspace.com/dl/8bd3ae93770203c0e568fb039a17b125/57a918fc77447600/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n5.sendspace.com/dl/db7f2a3d236a4497a6d9c3ffd1188ad3/572e92e467767df1/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n2.sendspace.com/dl/893bd01ad0729f544a72babeec8e6965/57caecdb18fc98c5/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n1.sendspace.com/dl/f0dfdb2957e9a87ffa6069ccae2103dd/5866664d0a0e2e10/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n1.sendspace.com/dl/0ebe55f9b9b32ff23fd50e551a424e3f/5795476f49976f75/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n3.sendspace.com/dl/5d7b921991db59a20b436671a6731267/58534d0350e38b09/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n2.sendspace.com/dl/63e8f3653c27f59e60bf421a90605029/57f79cb353fe1500/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n3.sendspace.com/dl/128fa7d12690482ea8e9e10bcd4dbb25/582f25b71cd3fac2/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n3.sendspace.com/dl/34f4a392e0669b5ed108d30163920620/57e484d21d92396c/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n1.sendspace.com/dl/40b4f57b5aabba19032eb70049d5af9c/584056890561e044/.../Rato leve permanente - CODE MASTER.EXE

https://fs04n5.sendspace.com/dl/e7acf9f73bcadd6a7edd7b19c183c9db/580055ca0a8274ff/.../Rato leve permanente - CODE MASTER.EXE

Latest 30 of 121 download URLs

Remove rato leve permanente - code master.exe - Powered by Reason Core Security