technic_launcher_32bit.exe

Mc Phoenix Launcher

This is a setup program which is used to install the application. The file has been seen being downloaded from download1310.mediafire.com and multiple other hosts.
Publisher:
Mc Phoenix Launcher

Product:
Mc Phoenix Launcher

Description:
This file is the main program

Version:
1.1.2

MD5:
bfbf352d490bfcf73be8ec48dd1306ae

SHA-1:
ae51660f6d06f428677c197ee3d2106de5abdb7a

SHA-256:
968b6e559f50b9eb92e2c970d6c4e9c3380fbebaa598fb9242e0728f42633b53

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/7/2024 8:34:24 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Trojan.MulDrop6.34224
9.0.1.05190

File size:
4.7 MB (4,934,856 bytes)

Product version:
1.1.2

Copyright:
Copyright (c) 2015 hackphoenix.com

Trademarks:
www.hackphoenix.com

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\technic_launcher_32bit.exe

File PE Metadata
Compilation timestamp:
3/23/2015 4:09:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:88C2RAzP7/BUNhKVGRhEk6Uw88EYUlYmiKc+urpqa0+RJfa:88C5P7pUNCGReEwdE5lBiBHRJi

Entry address:
0x194CB

Entry point:
55, 8B, EC, 6A, FF, 68, 60, 95, 43, 00, 68, 10, D4, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 10, 53, 56, 57, 89, 65, E8, FF, 15, CC, 90, 43, 00, 33, D2, 8A, D4, 89, 15, F8, 6F, 44, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, F4, 6F, 44, 00, C1, E1, 08, 03, CA, 89, 0D, F0, 6F, 44, 00, C1, E8, 10, A3, EC, 6F, 44, 00, 6A, 01, E8, 7F, 3E, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, AB, 00, 00, 00, 59, E8, 8A, 3B, 00, 00, 85, C0, 75, 08, 6A, 10, E8, 9A, 00, 00, 00, 59, 83, 65, FC, 00...
 
[+]

Entropy:
7.9303

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
224 KB (229,376 bytes)

The file technic_launcher_32bit.exe has been seen being distributed by the following 15 URLs.

http://download1310.mediafire.com/2zvpze883rag/.../Technic_Launcher_64bit.exe

http://www.dosya.tc/en2.php?a=server7/.../Technic_Launcher_32bit.exe&b=88cbfbce8d4aceaa09dbaf302be8e8dd

http://www.dosya.tc/en2.php?a=server7/.../Technic_Launcher_32bit.exe&b=5423f738e222abe9e76ebdf6a07cd392

http://www.dosya.tc/en2.php?a=server7/.../Technic_Launcher_32bit.exe&b=db90deec1a1ae60ed8fe84a3a6796cd7

http://www.dosya.tc/en2.php?a=server7/.../Technic_Launcher_32bit.exe&b=d1c70ca50883784272b52ff09344621d

http://download624.mediafire.com/ah6c75d6uezg/.../Technic_Launcher_32bit.exe

https://cdn.discordapp.com/attachments/231863023285960705/.../Technic_Launcher_32bit.exe

http://www.dosya.tc/en2.php?a=server7/.../Technic_Launcher_32bit.exe&b=5b95610a2d313955ed20dcc2322a6276

https://cdn.discordapp.com/attachments/233217416904179712/.../Technic_Launcher_32bit.exe

http://www.dosya.tc/en2.php?a=server7/.../Technic_Launcher_32bit.exe&b=8a23a5f7b6838f11c15b8a1f3b46ee44

http://download801.mediafire.com/x5n95ybntcig/.../Technic_Launcher_32bit.exe

Scan technic_launcher_32bit.exe - Powered by Reason Core Security