wolfteam hack's d3d v1.3.exe

Wolfteam Hacks

The executable wolfteam hack's d3d v1.3.exe has been detected as malware by 4 anti-virus scanners. The file has been seen being downloaded from fs09n2.sendspace.com.
Product:
Wolfteam Hacks

Version:
1.0.0.0

MD5:
1fac0db56df18ed1074df19c53b62be1

SHA-1:
f7362b02afed0c4019a4fe92fe9e4ceed5fa89ac

SHA-256:
16ec83fcc67f86d7eda771fbcc181ead11eabc2e971a9c79481a570e216e1c80

Scanner detections:
4 / 68

Status:
Malware

Analysis date:
4/19/2024 5:20:36 PM UTC  (today)

Scan engine
Detection
Engine version

Emsisoft Anti-Malware
Gen:Variant.Symmi.61764
11.5.0.6191

ESET NOD32
MSIL/GameHack.ER potentially unsafe application
8.0.319.0

F-Prot
W32/NewMalware-LSR-based!Maximu
4.6.5.141

File size:
2.9 MB (2,997,760 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
Wolfteam Hacks.exe

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
11/16/2012 5:31:49 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:zRPsE3gTH3WMycqfS7wLRPsE3RPsEGFgqL5hRPsE:zRPPgz3xyc4RPvRPuL5hRP

Entry address:
0x1000

Entry point:
C3, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.9226

Code size:
512 Bytes (512 bytes)

The file wolfteam hack's d3d v1.3.exe has been seen being distributed by the following URL.

Remove wolfteam hack's d3d v1.3.exe - Powered by Reason Core Security