cd banda opus dei grande vitoria vol 05.exe

BR SOFTWARE LLC

The application cd banda opus dei grande vitoria vol 05.exe by BR SOFTWARE has been detected as adware by 20 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from www.klumag.net.
Publisher:
BR SOFTWARE LLC  (signed and verified)

MD5:
8338083b0726ccb7567732b0da7239e1

SHA-1:
854bc24a8c55749a58a29d666da7c59d37928506

SHA-256:
b96b19d80538aefebe3d7f3b1852728688b25e162387620422d62cc0cbee7220

Scanner detections:
20 / 68

Status:
Adware

Analysis date:
4/25/2024 7:42:13 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.Downware
2014.07.26

avast!
Win32:Adware-BJA [PUP]
2014.9-140730

AVG
Skodna
2015.0.3398

Baidu Antivirus
Adware.Win32.Midia
4.0.3.14730

Comodo Security
ApplicUnwnt
18986

ESET NOD32
Win32/AdWare.Midia (variant)
8.10154

IKARUS anti.virus
PUA.Midia
t3scan.1.6.1.0

K7 AntiVirus
Unwanted-Program
13.181.12846

Malwarebytes
PUP.Optional.Midia
v2014.07.30.02

McAfee
Artemis!AB33ECB00263
5600.7054

Qihoo 360 Security
HEUR/Malware.QVM05.Gen
1.0.0.1015

Reason Heuristics
PUP.BRSOFTWARE.i
14.7.30.2

Trend Micro House Call
Suspicious_GEN.F47V0725
7.2.211

VIPRE Antivirus
BRSoftware
31596

File size:
673.5 KB (689,680 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\cd banda opus dei grande vitoria vol 05.exe

Digital Signature
Signed by:

Authority:
Unizeto Technologies S.A.

Valid from:
8/5/2013 2:53:16 AM

Valid to:
8/5/2014 2:53:16 AM

Subject:
E=brsoftwarellc@gmail.com, CN="Open Source Developer, BRSOFTWARE", O=BR SOFTWARE LLC, C=US

Issuer:
CN=Certum Level III CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
31A16839BF246437971CE0D3DB836B1C

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:p+GBE6yIsECRpg2lS1dYk2yGOObrXH8vQCYGxw:g02IIQDExNTq4Gxw

Entry address:
0x7A934

Entry point:
55, 8B, EC, 83, C4, F0, B8, 94, A6, 47, 00, E8, C0, B6, F8, FF, A1, 40, D1, 47, 00, 8B, 00, E8, D4, DD, FD, FF, A1, 40, D1, 47, 00, 8B, 00, BA, AC, A9, 47, 00, E8, BB, D9, FD, FF, 8B, 0D, 28, CE, 47, 00, A1, 40, D1, 47, 00, 8B, 00, 8B, 15, 0C, 96, 47, 00, E8, C3, DD, FD, FF, 8B, 0D, F0, CF, 47, 00, A1, 40, D1, 47, 00, 8B, 00, 8B, 15, 30, 8D, 47, 00, E8, AB, DD, FD, FF, A1, 40, D1, 47, 00, 8B, 00, E8, 1F, DE, FD, FF, E8, 66, 94, F8, FF, 00, 00, FF, FF, FF, FF, 11, 00, 00, 00, 50, 72, 6F, 74, 65, 74, 6F, 72...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
486.5 KB (498,176 bytes)

The file cd banda opus dei grande vitoria vol 05.exe has been seen being distributed by the following URL.

Remove cd banda opus dei grande vitoria vol 05.exe - Powered by Reason Core Security