playbryte_setup.exe

The application playbryte_setup.exe has been detected as a potentially unwanted program by 8 anti-malware scanners. The file has been seen being downloaded from 1.inst.securedownlaoder.com.
MD5:
b70da9efd9c4d0b79392b25d895771ba

SHA-1:
62f620363c7bc8dab5759ba51108f45c244160a7

SHA-256:
a23130f8acefc434d99ab223cc28c088db8e83fd3d0e206a3e61f95554b6a40d

Scanner detections:
8 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 11:02:38 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Avira AntiVirus
ADWARE/Adware.Gen7
7.11.182.78

AVG
AdPlugin
2015.0.3305

Dr.Web
Trojan.DownLoader11.38715
9.0.1.05190

F-Prot
W32/A-f4795586
v6.4.7.1.166

IKARUS anti.virus
AdWare.AdPlugin
t3scan.1.8.3.0

Kaspersky
not-a-virus:AdWare.Win32.iBryte
15.0.0.494

NANO AntiVirus
Riskware.Win32.IBryte.dhhymw
0.28.6.62995

File size:
1.3 MB (1,348,096 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\playbryte_setup.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
24576:kBgLkUmlPpRO2qQhM/ILL6tjbZNxqBWsbK:JAUkRO26MLybZDqBWs+

Entry point:
0C, 1B, D1, 41, 42, 41, 41, 41, 45, 41, 41, 41, BE, BE, 41, 41, F9, 41, 41, 41, 41, 41, 41, 41, 01, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, 41, A9, 41, 41, 41, 4F, 5E, FB, 4F, 41, F5, 48, 8C, 60, F9, 40, 0D, 8C, 60, 15, 29, 28, 32, 61, 31, 33, 2E, 26, 33, 20, 2C, 61, 22, 20, 2F, 2F, 2E, 35, 61, 23, 24, 61, 33, 34, 2F, 61, 28, 2F, 61, 05, 0E, 12, 61, 2C, 2E, 25, 24, 6F, 4C, 4C, 4B, 65, 41, 41, 41, 41, 41, 41, 41...
 
[+]

Entropy:
5.4594

The file playbryte_setup.exe has been seen being distributed by the following URL.

Remove playbryte_setup.exe - Powered by Reason Core Security