angus2c-stringi-i-poceluy-vzasos-luis-rennison-fb2-biblioteka-ulektronnyh-knig-razlichnye-formaty-pd

LLC

The file angus2c-stringi-i-poceluy-vzasos-luis-rennison-fb2-biblioteka-ulektronnyh-knig-razlichnye-formaty-pd by LLC has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. The file has been seen being downloaded from myfileload.biz.
Publisher:
LLC   (signed and verified)

MD5:
108b53c43055a41e2e712f785260ba78

SHA-1:
dbbc34c37b589c24c3622e9a76c5401390c06a6f

SHA-256:
d71b9046f5c172b91c3ac57edaa0b77fce210802f7ec43a89e4f0a9c662d8fd2

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
1/10/2025 8:38:22 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Amonitize
17.2.21.2

File size:
3 MB (3,123,680 bytes)

Common path:
C:\users\{user}\downloads\angus2c-stringi-i-poceluy-vzasos-luis-rennison-fb2-biblioteka-ulektronnyh-knig-razlichnye-formaty-pdf2c-txt2c-fb22c-doc2c-epub2c-mobi-bez.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/17/2015 3:00:00 AM

Valid to:
6/17/2016 2:59:59 AM

Subject:
CN="LLC ""Breck SOFT""", O="LLC ""Breck SOFT""", STREET="UKRAINIAN Lesya, 26", L=Kiev, S=Kiev, PostalCode=01133, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00E879E640A60EB51434BC3901E9069FDE

File PE Metadata
Compilation timestamp:
8/15/2011 2:20:16 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

Entry address:
0xCED00

Entry point:
55, 8B, EC, 81, EC, D0, 03, 00, 00, 8B, 45, F8, 89, 85, 1C, FE, FF, FF, B9, FE, 75, 00, 00, 66, 89, 8D, 1C, FF, FF, FF, 8B, 95, 48, FE, FF, FF, 81, C2, F0, 7D, 00, 00, 81, E2, 93, 5C, 00, 00, 89, 95, 5C, FF, FF, FF, 8B, 45, 84, 89, 85, 10, FE, FF, FF, 8B, 8D, 10, FE, FF, FF, 83, E9, 15, 89, 8D, 10, FE, FF, FF, 81, BD, 10, FE, FF, FF, 92, 00, 00, 00, 0F, 87, 9C, 00, 00, 00, 8B, 95, 10, FE, FF, FF, 0F, B6, 82, 24, CD, 4D, 00, FF, 24, 85, 0C, CD, 4D, 00, 0F, B7, 8D, 38, FE, FF, FF, 03, 8D, B0, FE, FF, FF, 8B...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
941 KB (963,584 bytes)

The file angus2c-stringi-i-poceluy-vzasos-luis-rennison-fb2-biblioteka-ulektronnyh-knig-razlichnye-formaty-pd has been seen being distributed by the following URL.

http://myfileload.biz/dl2.php?link=672/0/76586148/.../MTE0NjM7NzY1ODYxNDg7aHR0cDovL2xvYWRsZWFkZXIubmV0L0xvYWRMZWFkZXIuZXhlO0FuZ3VzJTJDLVN0cmluZ2ktSS1Qb2NlbHV5LVZ6YXNvcy1MdWlzLVJlbm5pc29uLUZiMi0tQmlibGlvdGVrYS1VbGVrdHJvbm55aC1LbmlnLS1SYXpsaWNobnllLUZvcm1hdHktUGRmJTJDLVR4dCUyQy1GYjIlMkMtRG9jJTJDLUVwdWIlMkMtTW9iaS1CZXo7NjszNTY1MTU4OzA7MA,,