luxor evolved.exe

LV-II fungor

infidus vilitas facio

The application luxor evolved.exe, “aufero detego tracto” has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. It uses the Solimba download manager to push adware offers during the download and setup process. Bundled adware includes search and shopping web browser toolbars. The file has been seen being downloaded from layfolder.com.
Publisher:
infidus vilitas facio

Product:
LV-II fungor

Description:
aufero detego tracto

Version:
95.59.75.72

MD5:
2df323420a5d91f3bfed80f945200e30

SHA-1:
655aa4257b07542156ed0e0d0cd27e2346c47880

SHA-256:
ab85608bc09ec06ac3e2416cb3d9884dbcf52e8d58a5cfd8338e6588ecba3d48

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
Uses the Solimba installer to bundle adware offers.

Analysis date:
4/27/2024 4:28:49 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Solimba.Bundle (M)
16.8.5.20

File size:
533.4 KB (546,248 bytes)

Product version:
52.82.34.83

Copyright:
Copyright ferme

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\luxor evolved.exe

File PE Metadata
Compilation timestamp:
10/27/2014 2:24:21 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
12288:KxBt8xZr6zDTMJECEvL+JTDZ3oIjFZ77UARmM7B3f:Kx0sDTRJjkF3oIjHnUAZ5f

Entry address:
0xDE2C

Entry point:
E8, A3, 6C, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 58, 70, 42, 00, E8, FE, 15, 00, 00, E8, 74, 6E, 00, 00, 0F, B7, F0, 6A, 02, E8, 36, 6C, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, FF, 64, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Code size:
113.5 KB (116,224 bytes)

The file luxor evolved.exe has been seen being distributed by the following URL.

Remove luxor evolved.exe - Powered by Reason Core Security