bigfishgames_p186375362_s1_l1.exe

Big Fish Games

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from www.bigfishgames.fr and multiple other hosts.
Publisher:
Big Fish Games  (signed and verified)

Product:
Big Fish Games

Version:
3.0.1.60

MD5:
a119d713dbb38bce3c6ef1d68aaab2ea

SHA-1:
e2fa71c84487128b40062f45b24597264af5e508

SHA-256:
d2e6cf2882e7923daf96b846dd3b62523cbe0c11cf5b92a7af9af65b69383423

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/14/2024 11:58:57 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Rising Antivirus
NS:Malware.Install!1.9F21
23.00.65.14112

File size:
229.6 KB (235,080 bytes)

Product version:
3.0.1.60d

Copyright:
2007-2009 Big Fish Games, Inc. All rights reserved.

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\bigfishgames_p186375362_s1_l1.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/21/2010 5:00:00 PM

Valid to:
10/28/2013 4:59:59 PM

Subject:
CN=Big Fish Games, OU=Big Fish Games, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Big Fish Games, L=Seattle, S=Washington, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2501DD38D1FC395E95E43E70CB7592EA

File PE Metadata
Compilation timestamp:
12/5/2010 8:35:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:3SESFJPkcMbioHONzdJKOnS4mnSjGc0H1U45lJ:78JsBioH4rBn0lc0V3LJ

Entry address:
0x3249

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 14, A8, 74, 40, 00, 33, F6, C6, 44, 24, 10, 20, FF, 15, 30, 70, 40, 00, 53, FF, 15, 74, 72, 40, 00, 53, 68, 60, 01, 00, 00, A3, 50, F1, 42, 00, 8D, 44, 24, 38, 50, 53, 68, A7, 74, 40, 00, FF, 15, 5C, 71, 40, 00, 68, 9C, 74, 40, 00, 68, A0, E8, 42, 00, E8, 75, 23, 00, 00, FF, 15, B4, 70, 40, 00, 50, BF, 00, 50, 43, 00, 57, E8, 63, 23, 00, 00, 53, FF, 15, 0C, 71, 40, 00, 80, 3D, 00, 50, 43, 00, 22, A3, A4, F0, 42, 00, 8B, C7, 75, 0A...
 
[+]

Entropy:
7.6932

Packer / compiler:
Nullsoft install system v2.x

Code size:
23.5 KB (24,064 bytes)

The file bigfishgames_p186375362_s1_l1.exe has been discovered within the following programs.

BitTorrent  by BitTorrent Inc.
BitTorrent is a desktop application that allows you to work with torrent files.BitTorrent allows you to download files available as torrents, search torrent sites for music, videos, books, software and other free or public domain material.
www.bittorrent.com
7% remove it
www.PurpleHills.de
About 1% of users remove it
PokerStars.net  by PokerStars
PokerStars offers a downloadable poker client for both Windows and Macintosh operating systems, offering the same features to users of each client.
About 7% of users remove it
SnapPea  by Wandou Labs
The software currently distributes the app through the OpenCandy monetization platform which is known to distribute adware.
snappea.com
25% remove it
 
Powered by Should I Remove It?

The file bigfishgames_p186375362_s1_l1.exe has been seen being distributed by the following 50 URLs.

http://www.bigfishgames.fr/jeux-a-telecharger/10169/.../download.html

http://downloads.bigfishgames.com/bigcityadventuresa_s4_l3_gF1563T1L3_d1918610400.exe

http://downloads.bigfishgames.com/midnight-mysteries-3-demonio-mississippi_s4_l3_gF6221T1L3_d2006665686.exe

http://downloads.bigfishgames.com/way-to-go-bowling_s1_l1_gF2973T1L1_d1940063642.exe

http://downloads.bigfishgames.com/chickeninvaders2_s1_l1_gF45T1L1_d2035386217.exe

http://www.bigfishgames.com/download-games/16350/.../download.html?src=ogpreroll22463

http://downloads.bigfishgames.com/cooking-academy_s1_l1_gF2398T1L1_d2027039791.exe

http://downloads.bigfishgames.com/zombie-shooter_s1_l1_gF5049T1L1_d1916362719.exe

http://downloads.bigfishgames.com/plants-vs-zombies_s1_l1_gF5038T1L1_d1990478973.exe

http://downloads.bigfishgames.com/luxor_s1_l1_gF449T1L1_d1999346768.exe

http://downloads.bigfishgames.com/virtual-villagers-4-the-tree-of-life_s1_l1_gF5599T1L1_d1941936144.exe

http://ultradownloads.com.br/.../2,1116559.html

http://www.bigfishgames.com/download-games/7576/.../download.html

http://www.bigfishgames.com/download-games/19114/.../download.html

http://downloads.bigfishgames.com/csi-ny_s1_l1_gF2929T1L1_d2047953997.exe

http://downloads.bigfishgames.com/alienshooter_s1_l1_gF10T1L1_d2006945085.exe

http://www.bigfishgames.com/download-games/11530/.../download.html

http://www.bigfishgames.es/juegos-de-descarga/20339/.../download.html?src=ogpreroll9811

http://downloads.bigfishgames.com/plants-vs-zombies_s1_l1_gF5038T1L1_d1952243983.exe

http://downloads.bigfishgames.com/chickeninvaders3_s1_l1_gF1463T1L1_d1961309576.exe

http://downloads.bigfishgames.com/haunted-legends-the-undertaker-ce_s1_l1_gF7463T1L1_d1939286173.exe

http://downloads.bigfishgames.com/virtual-villagers-4-the-tree-of-life_s1_l1_gF5599T1L1_d2036697832.exe

http://downloads.bigfishgames.com/bigfishgames_p186028825_s5_l4.exe

http://downloads.bigfishgames.com/farm-frenzy-3_s18_l7_gF5197T1L7_d1925720021.exe

http://www.bigfishgames.es/juegos-de-descarga/5848/.../download.html

http://downloads.bigfishgames.com/luxor2_s1_l1_gF1214T1L1_d1909113802.exe

http://downloads.bigfishgames.com/bigfishgames_p67668997_s1_l1.exe

http://www.bigfishgames.com/download-games/971/.../download.html?afcode=afbb0a1fb8e5&channel=affiliates&identifier=afbb0a1fb8e5&cid=D130604SbagenLdubfg

http://downloads.bigfishgames.com/bigfishgames_p1481111_s1_l1.exe

http://www.bigfishgames.fr/jeux-a-telecharger/19526/.../download.html

Latest 30 of 1,518 download URLs

Scan bigfishgames_p186375362_s1_l1.exe - Powered by Reason Core Security