harry potter and the half blood prince multi 16 repack mr dj.exe

PSK LOGEUM LLC

The application harry potter and the half blood prince multi 16 repack mr dj.exe by PSK LOGEUM has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the Smart Installer installer.
Publisher:
PSK LOGEUM LLC  (signed and verified)

MD5:
784400c49f246d121003f9897d8a003d

SHA-1:
3509c77d7082b2fc17dcc520451d5c5aaf7a5dfe

SHA-256:
8d0502d0c75cc2e1b4e944d8ea6838aeda7a4ec555d2e4d9203c3b382ad16f14

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
11/16/2024 4:04:02 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.SmartInstaller (M)
17.3.7.0

File size:
669.8 KB (685,848 bytes)

File type:
Executable application (Win32 EXE)

Bundler/Installer:
Smart Installer

Common path:
C:\users\{user}\downloads\ harry potter and the half blood prince multi 16 repack mr dj.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
9/3/2014 6:00:00 PM

Valid to:
9/8/2017 6:00:00 AM

Subject:
CN=PSK LOGEUM LLC, O=PSK LOGEUM LLC, L=Tomilino, S=Moscow City, C=RU

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0EBD722D27612E0248DB22AFDBA5AB32

File PE Metadata
Compilation timestamp:
11/19/2014 10:08:35 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.22

Entry address:
0x12A0

Entry point:
83, EC, 1C, C7, 04, 24, 02, 00, 00, 00, FF, 15, 68, 71, 40, 00, E8, 4B, FD, FF, FF, 8D, 74, 26, 00, 8D, BC, 27, 00, 00, 00, 00, A1, 88, 71, 40, 00, FF, E0, 89, F6, 8D, BC, 27, 00, 00, 00, 00, A1, 74, 71, 40, 00, FF, E0, 90, 90, 90, 90, 90, 90, 90, 90, 90, 8B, 0D, 0C, 30, 40, 00, 85, C9, 74, 38, 55, 89, E5, 83, EC, 18, C7, 04, 24, 00, 40, 40, 00, E8, AC, 0B, 00, 00, 52, 85, C0, 74, 23, C7, 44, 24, 04, 0E, 40, 40, 00, 89, 04, 24, E8, 9F, 0B, 00, 00, 83, EC, 08, 85, C0, 74, 09, C7, 04, 24, 0C, 30, 40, 00, FF...
 
[+]

Code size:
4.5 KB (4,608 bytes)