acelerador.exe

Gerenciador de Download

BR SOFTWARE LLC

The application acelerador.exe by BR SOFTWARE has been detected as adware by 20 anti-malware scanners. This is a setup program which is used to install the application. According to AVG, this software downloads additional adware offers during setup. The file has been seen being downloaded from www.publicidade.me and multiple other hosts.
Publisher:
ASSISTENTE DE DOWNLOAD  (signed by BR SOFTWARE LLC)

Product:
Gerenciador de Download

Version:
1.0.0

MD5:
b9eb54fb301fc55dca5a42c9bacd2758

SHA-1:
20ffd46c45848dadc49307ac12681f0950019fae

SHA-256:
59515f8f155836d8e083cb61ad8f05387d1e3bdf4a939cf96781d0227a7e7a3a

Scanner detections:
20 / 68

Status:
Adware

Analysis date:
12/24/2024 7:34:58 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.Agent
2013.10.10

Avira AntiVirus
TR/Agent.382352
7.11.106.194

avast!
Win32:Malware-gen
2014.9-131219

AVG
MalSign.Downloader.edc
2014.0.3620

Bitdefender
Gen:Variant.Adware.PCMega.2
1.0.20.1765

Comodo Security
ApplicUnwnt.Win32.AdWare.Agent.~A
17077

Dr.Web
Adware.Downware.376
9.0.1.0353

Emsisoft Anti-Malware
Gen:Variant.Adware.PCMega
8.13.12.19.03

ESET NOD32
Win32/Adware.PCMega
7.8896

F-Prot
W32/Adware.AKQE
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.PCMega.2
11.2013-19-12_5

G Data
Gen:Variant.Adware.PCMega
13.12.22

herdProtect (fuzzy)
2013.12.25.13

IKARUS anti.virus
Win32.Downloader.RDW
t3scan.2.0.127

K7 AntiVirus
Adware
13.173.9818

McAfee
Artemis!B9EB54FB301F
5600.7276

MicroWorld eScan
Gen:Variant.Adware.PCMega.2
14.0.0.1059

Reason Heuristics
PUP.BRSOFTWARE.K
14.3.29.10

SUPERAntiSpyware
Trojan.Agent/Gen-ZAccess
10898

ViRobot
Backdoor.Win32.A.ZAccess.394869[UPX]
2011.4.7.4223

File size:
373.4 KB (382,352 bytes)

Product version:
1.0.0

Copyright:
© ASSISTENTE DE DOWNLOAD

Original file name:
acelerador.exe

File type:
Executable application (Win32 EXE)

Language:
Brazilian Portuguese

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\low\content.ie5\{random}\acelerador.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
6/8/2012 3:58:43 PM

Valid to:
6/9/2015 3:58:43 PM

Subject:
CN=BR SOFTWARE LLC, O=BR SOFTWARE LLC, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11212BC0BF00C9C6FB65718638885C9FC576

File PE Metadata
Compilation timestamp:
5/6/2009 2:23:44 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:gfxjxvjpe238JMJRMVkvkcyc65DECBe2UQB343iTYOGQKnOfadwwu:gfnbsJiRQf9VnBe2U8ISUZQBCdvu

Entry address:
0xFA6C0

Entry point:
60, BE, 00, 20, 4A, 00, 8D, BE, 00, F0, F5, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89...
 
[+]

Packer / compiler:
UPX 2.90LZMA]

Code size:
356 KB (364,544 bytes)

The file acelerador.exe has been seen being distributed by the following 3 URLs.

Remove acelerador.exe - Powered by Reason Core Security