93530__tv-torrent.org-id1-torrent.exe

Amulet

The application 93530__tv-torrent.org-id1-torrent.exe by Amulet has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. The file has been seen being downloaded from 188.166.36.229.
Publisher:
Amulet  (signed and verified)

MD5:
7bed736cddcad10ada69adbdbf00b1b1

SHA-1:
465f9869fd58444f139356e39942c0d35c514fd9

SHA-256:
bcab9723add7b7b836595467858e9b81aa58f4373a777681cce9b10e33a5e35f

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 12:08:37 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.FileTour (M)
17.3.1.10

File size:
1.9 MB (2,029,984 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\93530__tv-torrent.org-id1-torrent.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
12/18/2015 2:00:00 AM

Valid to:
12/18/2016 1:59:59 AM

Subject:
CN=Amulet, O=Amulet, POBox=127015, STREET="Vyatskaya, 70, pom.1", L=Moscow, S=Moscow state, PostalCode=127015, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B48E86D275ECE7BFC0A62B206428EDAC

File PE Metadata
Compilation timestamp:
6/7/2009 12:41:54 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x24F141

Entry point:
68, 4C, F1, 64, 00, 03, D1, C3, 00, E9, D1, B8, FC, AF, 00, 00, 8B, C8, 49, E0, FD, 90, 90, 90, FC, 33, C0, E9, 56, 06, 00, 00, 43, 43, 81, 04, 24, A0, 3E, 1D, 9D, E9, 46, 1D, 00, 00, 29, B2, 7B, 59, 68, C8, 03, 65, 00, 9C, FF, 44, 24, 04, 9D, C3, 61, FF, E2, 68, 95, B8, 77, 2E, 9C, 81, 6C, 24, 04, 08, AD, 12, 2E, 9D, C3, 4D, 81, C1, 4A, E4, F6, 00, 68, 2E, CC, F3, 7D, 9C, 81, 44, 24, 04, A6, 44, 71, 82, 9D, C3, AF, 8D, 64, 24, 04, 68, B3, FA, 64, 00, 9C, FF, 4C, 24, 04, 9D, C3, FA, 99, D7, B9, 00, 00, 00...
 
[+]

Code size:
1.2 MB (1,224,704 bytes)

The file 93530__tv-torrent.org-id1-torrent.exe has been seen being distributed by the following URL.

http://188.166.36.229/api/download/BYKXbBdrf7A/lydCquoNukSRRkvU9U8BCQ/lydCquoNukR2Nllgy1foXg/.../Tt2DRwr442LqmAPF5LqUra9HrhjaH2TzSffaGWRHaiSuSirVxmO97w

Remove 93530__tv-torrent.org-id1-torrent.exe - Powered by Reason Core Security