SMS Bomber V5.0.exe

SMS Bomber V5.0

Psycho Nation

The application SMS Bomber V5.0.exe has been detected as a potentially unwanted program by 23 anti-malware scanners. The file has been seen being downloaded from download1611.mediafire.com and multiple other hosts.
Publisher:
Psycho Nation

Product:
SMS Bomber V5.0

Version:
5.0.0.0

MD5:
6b486b731908302e5019a6b1ac994879

SHA-1:
204b1ca48fb6826140558e93610a206118495b37

SHA-256:
857869ed54c53a64858104b7bbea35098fb80de763d488064fa6a12dacd31a72

Scanner detections:
23 / 68

Status:
Potentially unwanted

Analysis date:
4/27/2024 1:41:50 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.11443107
908

Agnitum Outpost
Riskware.SMSFlooder
7.1.1

AVG
Flooder
2015.0.3386

Baidu Antivirus
Hacktool.MSIL.SMSFlooder
4.0.3.14811

Bitdefender
Trojan.Generic.11443107
1.0.20.1115

Comodo Security
UnclassifiedMalware
18993

Emsisoft Anti-Malware
Trojan.Generic.11443107
8.14.08.11.04

ESET NOD32
MSIL/HackTool.SMSFlooder
8.10160

Fortinet FortiGate
W32/Malware_fam.NB
8/11/2014

G Data
Trojan.Generic.11443107
14.8.24

IKARUS anti.virus
Trojan.MSIL.HackTool
t3scan.1.6.1.0

K7 AntiVirus
Hacktool
13.181.12846

McAfee
Artemis!6B486B731908
5600.7042

MicroWorld eScan
Trojan.Generic.11443107
15.0.0.669

Norman
Suspicious_Gen2.VXIEC
11.20140811

nProtect
Trojan.Generic.11443107
14.07.27.01

Qihoo 360 Security
Win32/Trojan.Multi.daf
1.0.0.1015

Trend Micro House Call
TROJ_GEN.R047B01GM14
7.2.223

VIPRE Antivirus
Trojan.Win32.Generic
31656

File size:
275 KB (281,600 bytes)

Product version:
5.0.0.0

Copyright:
Copyright © Psycho Nation 2014

Original file name:
SMS Bomber V5.0.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\sms bomber v5.0.exe

File PE Metadata
Compilation timestamp:
3/4/2014 7:52:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:0UxaHHUxaHj5p6IUxaHnB0/m4dM+YKmU+I1UILhufXdaj87zUxaH:0smsMp6IsyBwYG+I1UILhulNs

Entry address:
0x402CE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.8639

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
249 KB (254,976 bytes)

The file SMS Bomber V5.0.exe has been seen being distributed by the following 3 URLs.

http://download1611.mediafire.com/vrgxd4862wjg/.../SMS Bomber V5.0.exe

Remove SMS Bomber V5.0.exe - Powered by Reason Core Security