Xbox Backup Creator.exe

Xbox Backup Creator

Scene Release

The executable Xbox Backup Creator.exe, “Xbox Backup Creator - All the tools you need to create a working backup.” has been detected as malware by 7 anti-virus scanners. The file has been seen being downloaded from download1399.mediafire.com and multiple other hosts.
Publisher:
Scene Release

Product:
Xbox Backup Creator

Description:
Xbox Backup Creator - All the tools you need to create a working backup.

Version:
2.09.0421

MD5:
9d67446b7721e9f7357e104bb7ab63f8

SHA-1:
28cf1cf4952aeef1f28561bd112600b9de50ad8e

SHA-256:
6db1b6fb35219a64ed995def633a7b9a4dc24e13eaa22a7d98f9ee060ad237b3

Scanner detections:
7 / 68

Status:
Malware

Analysis date:
4/26/2024 9:10:57 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
HackTool
2015.0.3478

Comodo Security
UnclassifiedMalware
17316

Dr.Web
Trojan.Siggen4.13628
9.0.1.0131

IKARUS anti.virus
possible-Threat.HackTool.ABYB
t3scan.2.2.29

NANO AntiVirus
Trojan.Win32.Agent2.zkrkc
0.28.0.56316

Norman
Hacktool.YZN
11.20140511

VIPRE Antivirus
Trojan.Win32.Generic
23626

File size:
2 MB (2,142,208 bytes)

Product version:
2.09.0421

Copyright:
2006(c) Redline99

Original file name:
Xbox Backup Creator.exe

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
5/23/2012 9:09:12 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:BKta+w5ohCPapsYPKmGshy/FfjhbwY4m+KE0VVQJuNH:BKta+w5ohCPapsYPKmGs0FfjNh7RE0V1

Entry address:
0x1564C

Entry point:
68, E4, 5C, 41, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 60, 00, 00, 00, 48, 00, 00, 00, C6, D7, 9C, C9, E3, 04, A4, 45, B6, 98, 78, F2, 06, FB, 5B, 47, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 58, 62, 6F, 78, 42, 61, 63, 6B, 75, 70, 43, 72, 65, 61, 74, 6F, 72, 00, 00, 00, 00, 00, 00, 00, 58, 62, 6F, 78, 20, 42, 61, 63, 6B, 75, 70, 20, 43, 72, 65, 61, 74, 6F, 72, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 27, 00, 14, 99, 42, 00, 00, 00, 00, 00, FF, FF, FF, FF...
 
[+]

Entropy:
6.0027

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
2 MB (2,060,288 bytes)

The file Xbox Backup Creator.exe has been seen being distributed by the following 2 URLs.

http://download1399.mediafire.com/hd334a9511kg/.../Xbox Backup Creator.exe

Remove Xbox Backup Creator.exe - Powered by Reason Core Security