Total War ROME II Update 9 Incl DLC-RELOADED.exe

The executable Total War ROME II Update 9 Incl DLC-RELOADED.exe has been detected as malware by 13 anti-virus scanners.
MD5:
56b8db52526be4cb64e1dbac777ed3aa

SHA-1:
e0f5ff8e5444601442a4dd24e2f1e800c949609c

SHA-256:
e700906f5b6c2032340488aa58207e4ae6429498ded9125d0aada412a098c18e

Scanner detections:
13 / 68

Status:
Malware

Analysis date:
4/23/2024 5:05:06 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.MulDrop
7.1.1

AhnLab V3 Security
Trojan/Win32.FakeWarn
14.04.23

Avira AntiVirus
TR/Dropper.A.21434
7.11.136.240

AVG
Dropper.Generic9
2015.0.3495

Dr.Web
Trojan.MulDrop5.8888
9.0.1.0113

IKARUS anti.virus
Trojan-Dropper.A
t3scan.2.2.29

McAfee
Artemis!56B8DB52526B
5600.7151

NANO AntiVirus
Trojan.Win32.MulDrop5.ctnqvv
0.28.0.58394

Norman
Suspicious_Gen5.ALSFR
11.20140423

Panda Antivirus
Suspicious file
14.04.23.08

Total Defense
Win32/Inject.C!generic
37.0.10818

Trend Micro House Call
TROJ_GEN.R0CBB01BB14
7.2.113

VIPRE Antivirus
Trojan.Win32.Generic
27366

File size:
1.8 MB (1,867,683 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
1/19/2014 12:19:34 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
49152:U1lr2aladhhmlvfRinhRZ0QMlUwZhw2p0zDoMPSWuRDZ2R:yrvlanhAvfRqhRMiShdp0fFPBCDZu

Entry address:
0x1000

Entry point:
68, F0, 00, 00, 00, 68, 00, 00, 00, 00, 68, A8, 9B, 40, 00, E8, FC, 2F, 00, 00, 83, C4, 0C, 68, 00, 00, 00, 00, E8, F5, 2F, 00, 00, A3, AC, 9B, 40, 00, 68, 00, 00, 00, 00, 68, 00, 10, 00, 00, 68, 00, 00, 00, 00, E8, E2, 2F, 00, 00, A3, A8, 9B, 40, 00, E8, AC, 4B, 00, 00, E8, B7, 42, 00, 00, E8, 31, 3F, 00, 00, E8, AD, 3A, 00, 00, E8, 16, 38, 00, 00, E8, E3, 4B, 00, 00, 50, 68, 9C, 91, 40, 00, E8, E6, 20, 00, 00, 68, B4, 9B, 40, 00, E8, 0E, 4C, 00, 00, E8, C9, 4B, 00, 00, 50, 68, 2C, 93, 40, 00, E8, CC, 20...
 
[+]

Packer / compiler:
PKLITE32, 0x1.1

Code size:
19 KB (19,456 bytes)