steam wallet hack v4.1.exe

steamnow

The executable steam wallet hack v4.1.exe has been detected as malware by 11 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1343.mediafire.com.
Publisher:
Microsoft*  (Invalid match)

Product:
steamnow

Version:
1.0.0.0

MD5:
c807d397657a32a4e39040331e0d41ab

SHA-1:
d33b7ea82f20d6bd2f2a86c482ea58fb55a5213d

SHA-256:
3d2fd7a5dc71dcad097e538df35165f65111bb4aeb2427100959eb7104a49508

Scanner detections:
11 / 68

Status:
Malware

Analysis date:
4/20/2024 4:11:09 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.1759985
855

Bitdefender
Trojan.GenericKD.1759985
1.0.20.1375

F-Secure
Trojan.GenericKD.1759985
11.2014-02-10_5

G Data
Trojan.GenericKD.1759985
14.10.24

IKARUS anti.virus
Trojan-Clicker.MSIL.FakeHack
t3scan.1.6.1.0

Kaspersky
Trojan-Clicker.MSIL.FakeHack
14.0.0.3162

McAfee
Artemis!C807D397657A
5600.6989

MicroWorld eScan
Trojan.GenericKD.1759985
15.0.0.825

Norman
Suspicious_Gen5.ATHQJ
11.20141002

nProtect
Trojan.GenericKD.1759985
14.08.11.01

Qihoo 360 Security
Win32/Trojan.Clicker.102
1.0.0.1015

File size:
368 KB (376,832 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2013

Original file name:
steamnow.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\steam wallet hack v4.1.exe

File PE Metadata
Compilation timestamp:
1/26/2014 11:33:18 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:4Pe+lKFx1PGuEjTH6ByrKMSu5sWYuRZPe+lKFx1PGOEjTH6ByrKMS+5sW:2lKX93kTa4rsklKX9nkTa4rs

Entry address:
0x33C4E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
200 KB (204,800 bytes)

The file steam wallet hack v4.1.exe has been seen being distributed by the following URL.

Remove steam wallet hack v4.1.exe - Powered by Reason Core Security