jogo.exe

Gerenciador de Download

BR SOFTWARE LLC

The application jogo.exe by BR SOFTWARE has been detected as adware by 23 anti-malware scanners. This is a setup program which is used to install the application. According to AVG, this software downloads additional adware offers during setup. The file has been seen being downloaded from www.publicidade.me.
Publisher:
ASSISTENTE DE DOWNLOAD  (signed by BR SOFTWARE LLC)

Product:
Gerenciador de Download

Version:
1.0.0

MD5:
bf9d532b5ef7b8dd2c2a28e4bca3e8a6

SHA-1:
90f8330781cd3fa21bca066ed1436c63edb7716e

SHA-256:
89bafa15832d7015689445a08db7875a3ccd549388c763b88e855ecce0754eeb

Scanner detections:
23 / 68

Status:
Adware

Analysis date:
12/24/2024 7:38:29 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.PCMega.2
816

Agnitum Outpost
Adware.Generic
7.1.1

Avira AntiVirus
TR/Dldr.Agent.391560.21
7.11.153.48

avast!
Win32:Downloader-RDY [Adw]
2014.9-141110

AVG
Downloader.edc
2015.0.3294

Bitdefender
Gen:Variant.Adware.PCMega.2
1.0.20.1570

Bkav FE
W32.Clod0d3.Trojan
1.3.0.4959

Comodo Security
Application.Win32.PCMega.L
18440

Dr.Web
Adware.Downware.376
9.0.1.0314

Emsisoft Anti-Malware
Gen:Variant.Adware.PCMega
8.14.11.10.02

F-Prot
W32/Adware.AKQE
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.PCMega.2
11.2014-10-11_2

G Data
Gen:Variant.Adware.PCMega
14.11.24

IKARUS anti.virus
Win32.Downloader.RDY
t3scan.1.6.1.0

Malwarebytes
Adware.Bundler
v2014.11.10.02

McAfee
Artemis!BF9D532B5EF7
5600.6950

MicroWorld eScan
Gen:Variant.Adware.PCMega.2
15.0.0.942

NANO AntiVirus
Riskware.Win32.Agent.czmlms
0.28.0.60100

Panda Antivirus
Trj/Downloader.VPT
14.11.10.02

Reason Heuristics
PUP.BRSOFTWARE.E
14.11.10.14

Rising Antivirus
PE:Malware.Downloader!1.9EEC
23.00.65.141108

SUPERAntiSpyware
Trojan.Agent/Gen-ZAccess
10246

ViRobot
Backdoor.Win32.A.ZAccess.394869[UPX]
2011.4.7.4223

File size:
382.4 KB (391,560 bytes)

Product version:
1.0.0

Copyright:
© ASSISTENTE DE DOWNLOAD

Original file name:
acelerador.exe

File type:
Executable application (Win32 EXE)

Language:
Brazilian Portuguese

Common path:
C:\users\{user}\downloads\jogo.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
6/8/2012 3:58:43 PM

Valid to:
6/9/2015 3:58:43 PM

Subject:
CN=BR SOFTWARE LLC, O=BR SOFTWARE LLC, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11212BC0BF00C9C6FB65718638885C9FC576

File PE Metadata
Compilation timestamp:
5/6/2009 2:23:44 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:Zfxjxvjpe238JMJRMVkvkcyc65DECBe2UQB343iTYOGQKnO+xHg4ibOsh:ZfnbsJiRQf9VnBe2U8ISUZQB+xHnibXh

Entry address:
0xFC6C0

Entry point:
60, BE, 00, 40, 4A, 00, 8D, BE, 00, D0, F5, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89...
 
[+]

Packer / compiler:
UPX 2.90LZMA

Code size:
356 KB (364,544 bytes)

The file jogo.exe has been seen being distributed by the following URL.

Remove jogo.exe - Powered by Reason Core Security