breakaway_setup_1.30.02.exe

Claesson Edwards Audio LLC

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is installed with Breakaway Audio Enhancer. The file has been seen being downloaded from ultradownloads.com.br and multiple other hosts.
Publisher:
Claesson Edwards Audio LLC  (signed and verified)

MD5:
ae70c17f344b583d3e8d6f687c836288

SHA-1:
7a618d7add0e6025b15e565b857a764785436e5a

SHA-256:
744ac61b8babd0a62ea09d647b065fde7e234d640404d51f2b0262f92459e55f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/22/2017 9:21:40 PM UTC  (today)

File size:
3.1 MB (3,278,592 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\downloads\breakaway_setup_1.30.02.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
6/2/2009 1:00:00 AM

Valid to:
6/3/2010 12:59:59 AM

Subject:
CN=Claesson Edwards Audio LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Claesson Edwards Audio LLC, L=Antioch, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7608657431FA360CCF9C392D8E6A2BEB

File PE Metadata
Compilation timestamp:
8/16/2008 9:26:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:6lpUCA09p7WU7uKG7f7jFIh0So3vtZ3hXd:6XdhnWRf7ZKBo3vtV

Entry address:
0x30E3

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 58, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 18, EC, 42, 00, E8, 23, 2B, 00, 00, A3, 64, EB, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 90, 8F, 42, 00, FF, 15, 58, 71, 40, 00, 68, 4C, 91, 40, 00, 68, 60, E3, 42, 00, E8, DA, 27, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 40, 43, 00, 50, 57, E8, C8, 27, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file breakaway_setup_1.30.02.exe has been discovered within the following program.

Breakaway Audio Enhancer  by Claesson Edwards Audio LLC
20% remove it
 
Powered by Should I Remove It?

The file breakaway_setup_1.30.02.exe has been seen being distributed by the following 15 URLs.

http://ultradownloads.com.br/.../2,906377.html

http://188.138.9.44/.../breakaway_setup_1.30.02.exe

&onid=2169&oid=3001-2169_4-10824539&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=mp3audio/audio-plugins-utilities&topicbrcrm=&pid=11204112&mfgid=6307069&merid=6307069&ctype=dm&cval=NONE&devicetype=desktop&pguid=11ec06835f39b250489d43ed&viewguid=bkgjkmgf4Y5rHv2cFY1OB5lGYNHVoUrI3wYk&destUrl=http://files.downloadnow.com/s/software/11/20/41/.../breakaway_setup_1.30.02.exe

http://188.138.70.231/.../breakaway_setup_1.30.02.exe

http://descargar.freedownloadmanager.org/Windows-PC/.../GRATIS-1.30.02.html?ac173f7

http://download.freedownloadmanager.org/Windows-PC/.../FREE-1.30.02.html?ac173f7

https://store.claessonedwards.com/.../DownloadManager.ashx?o=7924&t=37BBF5E1-3929-42CD-85BC-219F258A2C7D

Scan breakaway_setup_1.30.02.exe - Powered by Reason Core Security