deus da minha vida thalles roberto melodia lanamento 2014.exe

BRASFIELD LLC

The application deus da minha vida thalles roberto melodia lanamento 2014.exe, “Download da Internet” by BRASFIELD has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from baixegetit.net.
Publisher:
yTVnQOo5hT6GbOusu  (signed by BRASFIELD LLC)

Description:
Download da Internet

Version:
8.3.4.6

MD5:
553922a9bba6470eba5de90d1dfa5465

SHA-1:
4e152675d4adc5687df8741ae614b442b47e6c18

SHA-256:
0884161f7d7e8633a8db70b12612b609417f290b5e304b9fb8454c87e2ce29de

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
1/24/2025 10:15:06 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.BRASFIEL.Installer (M)
16.7.12.23

File size:
74.4 KB (76,224 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\deus da minha vida thalles roberto melodia lanamento 2014.exe

Digital Signature
Signed by:

Authority:
Starfield Technologies, Inc.

Valid from:
5/5/2015 5:42:38 PM

Valid to:
4/21/2016 3:24:39 PM

Subject:
CN=BRASFIELD LLC, O=BRASFIELD LLC, L=Lewes, S=Delaware, C=US

Issuer:
CN=Starfield Secure Certificate Authority - G2, OU=http://certs.starfieldtech.com/repository/, O="Starfield Technologies, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
00975D4C0519C5095A

File PE Metadata
Compilation timestamp:
12/5/2009 8:50:35 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:GoLDYsacy7mHMowHjXJF5BviSlqSyPhPmpJwPKbiGca0:GoPyys5jXJF5BaJzPqeyWr

Entry address:
0x323F

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 98, 27, 7A, 00, E8, 09, 2C, 00, 00, A3, E4, 26, 7A, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 98, DC, 79, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, E0, 1E, 7A, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 80, 7A, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file deus da minha vida thalles roberto melodia lanamento 2014.exe has been seen being distributed by the following URL.