download all of me john legend (trilha sonora de alto astral) mp3john legend all of me download.exe

Devstation LLC

The application download all of me john legend (trilha sonora de alto astral) mp3john legend all of me download.exe by Devstation has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer.
Publisher:
Devstation LLC  (signed and verified)

Version:
6.9.4.5

MD5:
3609bb392004c812dd9a9a2f0c51686a

SHA-1:
79fde43f56f0a88af101e3c85f4a5792ae2ab058

SHA-256:
33194c8e3a9f433a97afb166424ac1c41d0e9d625dce55071c9dd8904edff50b

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 5:09:54 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Adload (M)
17.3.7.19

File size:
75.8 KB (77,568 bytes)

Copyright:
o3WhYtvKsM3nX0L7GKXM

Trademarks:
o3WhYtvKsM3nX0L7GKXM08B4e

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\download all of me john legend (trilha sonora de alto astral) mp3john legend all of me download.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/19/2015 9:00:00 PM

Valid to:
5/19/2016 8:59:59 PM

Subject:
CN=Devstation LLC, O=Devstation LLC, POBox=19958, STREET=16192 Coastal Highway, L=Lewes, S=Delaware, PostalCode=19958, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
7142F0F05291DB2F369F22EC4FE17988

File PE Metadata
Compilation timestamp:
12/5/2009 7:50:35 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x323F

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 98, 27, 7A, 00, E8, 09, 2C, 00, 00, A3, E4, 26, 7A, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 98, DC, 79, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, E0, 1E, 7A, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 80, 7A, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)