steam.exe

Steganos Software GmbH

The executable steam.exe, “OkayFreedomClient.exe” has been detected as malware by 5 anti-virus scanners.
Publisher:
Steganos Software GmbH

Description:
OkayFreedomClient.exe

Version:
10.4.4537.238

MD5:
984d8316b3b4092f046154b4cfb527a5

SHA-1:
ff45da81c17b50502530daf3d08208f28302c739

SHA-256:
1f91085652b0c8bf7d6aa5d1e87f90232138cb4d4835a80ec012cc0c340e1e0f

Scanner detections:
5 / 68

Status:
Malware

Analysis date:
4/24/2024 10:32:10 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Dropper.MSIL.141405
3.6.1.96

Kaspersky
UDS:DangerousObject.Multi.Generic
14.0.0.2260

Malwarebytes
Spyware.OnlineGames
v2015.04.01.02

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

VIPRE Antivirus
Trojan.Win32.Generic.pak!cobra
38944

File size:
741 KB (758,784 bytes)

Product version:
10.4.4537.238

Copyright:
Copyright (c) 2013 Steganos Software GmbH

Original file name:
KSILlzC.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
4/1/2015 12:45:08 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:scx6LdG4fbDMOQo721kH3xZvWp/ejb9WWY/7r:spGgeoKE3xQh3/7r

Entry address:
0x99262

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.7787

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
605 KB (619,520 bytes)

Remove steam.exe - Powered by Reason Core Security