GridinSoft Threat Intelligence
16m_xAB05.zip threat report
GridinSoft Anti-Malware detection
Detected by GridinSoft before you download
The current ThreatInfo record shows this exact file hash detected as Trojan.Heur!. Download GridinSoft Anti-Malware to scan the device, confirm whether this file is present, and remove the detected object if it is found.
- Detection name
- Trojan.Heur!
- Recommended action
- Scan and remove
- Last analysis
- 2024-01-12 23:58:04 (2 years ago)
- File hash
- 48265c84c7c5f0aa5c2a434659715b06
Why it matters
Why GridinSoft flags this file
GridinSoft identifies the sample as Trojan.Heur!.
First seen 2024-01-12 23:58:04 (2 years ago); latest analysis 2024-01-12 23:58:04 (2 years ago).
Company metadata: My.com B.V.. Product metadata: MY.GAMES Anti-Cheat.
ThreatInfo has seen this file in user or system paths listed below. Unexpected locations increase the need for local verification.
Recommended action
What to do next
- Compare the MD5 above with the file found on the device.
- Check whether the file appears in the observed locations or under one of the alternate names.
- Run GridinSoft Anti-Malware to confirm the detection and remove the file if it is present.
File context
16m_xAB05.zip is a Windows file recorded in the ThreatInfo database. It is associated with MY.GAMES Anti-Cheat. The reported company name is My.com B.V.. The current detection status is Trojan.Heur!, based on the latest analysis from 2024-01-12 23:58:04 (2 years ago).
If 16m_xAB05.zip appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Trojan.Heur!.
File Details
| Product Name: | MY.GAMES Anti-Cheat |
| Company Name: | My.com B.V. |
| MD5: | 48265c84c7c5f0aa5c2a434659715b06 |
| Size: | 15 MB |
| First Published: | 2024-01-12 23:58:04 (2 years ago) |
| Latest Published: | 2024-01-12 23:58:04 (2 years ago) |
| Status: | Trojan.Heur! (on last analysis) | |
| Analysis Date: | 2024-01-12 23:58:04 (2 years ago) |
Detection screenshot
The screenshot is a visual record of a GridinSoft Anti-Malware detection for this sample. Use the hash and metadata above as the primary identifiers when comparing the file on your system.
Common Places:
| %sysdrive%\seagate backu + hub\recoveryo\recovered\wd games(j)\deleted files\steamlibrary\steamapps\common\dcsworld\mods\terrains\caucasus\rastercharts |
ThreatInfo has observed 16m_xAB05.zip in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.
Geographic signal
Observed country distribution
ThreatInfo has seen 16m_xAB05.zip across 1 countries. Use this signal to compare local evidence with where the sample is most often reported.
The strongest geographic signal for this file is United States with 100.0% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.
OS Version:
The most common operating system signal for 16m_xAB05.zip is Windows 10 with 100.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.
Analysis
16m_xAB05.zip is identified as pe for 64-bit systems. The subsystem is Windows GUI. PE header values are useful for triage, especially when they do not match the expected publisher, product, or release timeline.
PE Sections:
Section layout highlights raw-size concentration, repeated names, packer markers, and hashes that can be compared across related samples.
6a439e980c98e1c4dfea03bd5ba048c9
d1d1d264ce5b608ca50118f3a211f563
9004fa273977aa36670170052fbc6f31
f25be55e3d85b7dba74c64da525afb73
cb529a82f837ea9123c87344db4144b7
52640daa877c0dcfb412c037ff033a32
2580bbf5361c95f275f58f86bf8f1455
84a4bd894b22a365464ce93d02d1e8bd
b847a348d43bd01e1d37e98581bcd0cb
53e979547d8c2ea86560ac45de08ae25
6a4529990ec1cc2e37c45c657236f55b
6c7845244375a1dda95856e68300e9f0
198f5b687ec9c7c3e75b90f06c37c5f0
8aa36de9dc24d807db071a66c42296b1
00000000000000000000000000000000
00000000000000000000000000000000
PE section names and hashes can reveal packing, injected resources, or unusual build artifacts. Sections with uncommon names, very large raw data, or hashes that differ from a trusted copy deserve additional review.
Report conclusion
GridinSoft detects this file as Trojan.Heur!
This report identifies 16m_xAB05.zip by MD5 48265c84c7c5f0aa5c2a434659715b06. If the same file is present on your device, scan the system and remove the detected object after confirming the hash and location.