subway surf miami for pc.exe

Windows Internet Explorer

While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The executable subway surf miami for pc.exe, “Win32 Cabinet Self-Extractor ” has been detected as malware by 26 anti-virus scanners. The file has been seen being downloaded from dc681.4shared.com.
Publisher:
Microsoft Corporation*  (Invalid match)

Product:
Windows® Internet Explorer

Description:
Win32 Cabinet Self-Extractor

Version:
10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)

MD5:
55c993818f989ad219327dc5fb491b8c

SHA-1:
09a4af133f0b9c67a733093ec0a08a690dcb6b36

SHA-256:
cc0a8b48b1803652d1e8129f5d27d406c4cb6103a2bda7ec60f4a565c9f81d1e

Scanner detections:
26 / 68

Status:
Malware

Analysis date:
5/1/2024 9:10:20 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.Generic
2013.11.21

Avira AntiVirus
TR/Agent.2304054
7.11.114.224

avast!
MSIL:Bladabindi-IT [Wrm]
2014.9-140215

AVG
MSIL.ABAM.dropper
2015.0.3563

Baidu Antivirus
Trojan.Win32.Generic
4.0.3.14215

Bitdefender
Trojan.Generic.9688247
1.0.20.230

Comodo Security
UnclassifiedMalware
17310

Dr.Web
Win32.HLLW.Autoruner.25074
9.0.1.046

Emsisoft Anti-Malware
Trojan.Generic.9688247
8.14.02.15.08

ESET NOD32
MSIL/Injector.AWA (variant)
8.9076

Fortinet FortiGate
W32/Generic!tr
2/15/2014

F-Secure
Trojan.Generic.9212875
11.2014-15-02_7

G Data
Trojan.Generic.9688247
14.2.22

IKARUS anti.virus
Trojan.Msil
t3scan.2.2.29

K7 AntiVirus
Trojan
13.174.10263

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.4308

McAfee
RDN/Generic PWS.y!ut
5600.7219

Microsoft Security Essentials
Trojan:Win32/Dynamer!dtc
1.163.1557.0

MicroWorld eScan
Trojan.Generic.9688247
15.0.0.138

NANO AntiVirus
Trojan.Win32.Autoruner.cggqhf
0.28.0.56316

Norman
Troj_Generic.QCMHI
11.20140215

Panda Antivirus
Suspicious file
14.02.15.08

Sophos
Mal/Generic-S
4.95

Trend Micro House Call
TROJ_GEN.F0C2C0KJ113
7.2.46

Trend Micro
TROJ_GEN.F0C2C0KJ113
10.465.15

VIPRE Antivirus
Trojan.Win32.Generic
23574

File size:
253 KB (259,072 bytes)

Product version:
10.00.9200.16521

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
WEXTRACT.EXE .MUI

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\subway surf miami for pc.exe

File PE Metadata
Compilation timestamp:
2/17/2013 12:30:50 PM

OS version:
6.2

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.10

CTPH (ssdeep):
3072:iZxB9wKtSFxe5GWp1icKAArDZz4N9GhbkrNEk1AwcXRvmZ15f4coryJRqFc42VO8:KjtSIp0yN90QEtwcX5aaJy2F70CPW

Entry address:
0x6926

Entry point:
E8, 06, 08, 00, 00, E9, 0D, FE, FF, FF, CC, CC, CC, CC, CC, 3B, 0D, 00, 80, 40, 00, 75, 03, C2, 00, 00, E9, 05, 00, 00, 00, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 81, EC, 24, 03, 00, 00, A3, 20, 87, 40, 00, 89, 0D, 1C, 87, 40, 00, 89, 15, 18, 87, 40, 00, 89, 1D, 14, 87, 40, 00, 89, 35, 10, 87, 40, 00, 89, 3D, 0C, 87, 40, 00, 66, 8C, 15, 38, 87, 40, 00, 66, 8C, 0D, 2C, 87, 40, 00, 66, 8C, 1D, 08, 87, 40, 00, 66, 8C, 05, 04, 87, 40, 00, 66, 8C, 25, 00, 87, 40, 00, 66, 8C, 2D, FC, 86, 40, 00, 9C, 8F, 05, 30...
 
[+]

Entropy:
7.4936

Code size:
25.5 KB (26,112 bytes)

The file subway surf miami for pc.exe has been seen being distributed by the following URL.

Remove subway surf miami for pc.exe - Powered by Reason Core Security