videoconvertersetup.exe

The executable videoconvertersetup.exe has been detected as malware by 1 anti-virus scanner. The file has been seen being downloaded from www.superbvideoconverter.com.
MD5:
9abf7f4efe8e6599cdafe05686c90106

SHA-1:
bb0d4217813cd9f7db09daf799d738e221322dc9

SHA-256:
31af3b7a240fd5e09849308b64636929e062dbab8a1ba9fa6a4e8ccb7a6b8830

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
4/26/2024 1:51:09 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Threat.Win.Reputation.IMP
15.12.22.10

File size:
1 MB (1,062,160 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\videoconvertersetup.exe

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:Oq9qQDM2AUeZZfCYBO/iMSFZeE6h/rYQ8:OqfM2JeZZfsYTqVrb

Entry address:
0xC5EA0

Entry point:
55, 8B, EC, 83, C4, F0, B8, E8, 13, 40, 00, E8, B3, E2, FF, FF, 00, 00, 46, 60, 11, 40, 00, 08, 00, 00, 00, 00, 00, 00, 00, D8, 11, 40, 00, 6C, 11, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, D8, 11, 40, 00, 0C, 00, 00, 00, 9C, 10, 40, 00, 4C, 37, 40, 00, 0C, 60, 40, 00, 18, 60, 40, 00, 60, 37, 40, 00, 54, 37, 40, 00, 28, 60, 40, 00, B8, 34, 40, 00, F4, 34, 40, 00, 11, 54, 49, 6E, 74, 65, 72, 66, 61, 63, 65, 64, 4F, 62, 6A, 65, 63, 74, 8B, C0, F0...
 
[+]

Entropy:
6.9225

Developed / compiled with:
Microsoft Visual C++

Code size:
805 KB (824,320 bytes)

The file videoconvertersetup.exe has been seen being distributed by the following URL.

Remove videoconvertersetup.exe - Powered by Reason Core Security