luiz_gonzaga_-_discografia.exe

The application luiz_gonzaga_-_discografia.exe has been detected as a potentially unwanted program by 28 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from greatstuffz.net.
MD5:
5328bf14036cacbb4b427d103cd02338

SHA-1:
b1a7197dbff5a05c5a8d04102263460ae4d3e58e

SHA-256:
1710cebf6ae86ebb874d1d45dfe02b11376a1dde21b143926d60fafaad9e493d

Scanner detections:
28 / 68

Status:
Potentially unwanted

Analysis date:
2/25/2025 10:26:31 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Application.Barys.35597
795

Agnitum Outpost
PUA.WiseInstaller
7.1.1

AhnLab V3 Security
PUP/Win32.SmartInstaller
2014.11.01

avast!
Malware-gen
141130-1

AVG
Adware Generic5.CGGV
2014.0.4189

Bitdefender
Gen:Variant.Application.Barys.35597
1.0.20.1675

Clam AntiVirus
Win.Adware.Smartinstaller
0.98/19578

Comodo Security
Application.Win32.SmartInstaller.B
19960

Dr.Web
Adware.Downware.8658
9.0.1.0335

ESET NOD32
Win32/AdWare.WiseInstaller
8.10653

F-Prot
W32/A-7fa7b163
v6.4.7.1.166

F-Secure
Gen:Variant.Application.Barys
11.2014-01-12_2

G Data
Gen:Variant.Application.Barys.35597
14.12.24

IKARUS anti.virus
PUA.WiseInstaller
t3scan.1.8.3.0

K7 AntiVirus
Adware
13.185.13866

Kaspersky
not-a-virus:AdWare.Win32.SmartInstaller
14.0.0.2862

Malwarebytes
PUP.Optional.SmartInstaller
v2014.12.01.04

McAfee
RDN/Generic PUP.x!cpq
5600.6929

MicroWorld eScan
Gen:Variant.Application.Barys.35597
15.0.0.1005

NANO AntiVirus
Riskware.Win32.SmartInstaller.dgkdju
0.28.6.62995

nProtect
Trojan-Clicker/W32.SmartInstaller.682504
14.10.31.01

Qihoo 360 Security
Malware.QVM06.Gen
1.0.0.1015

Reason Heuristics
Threat.Win.Reputation.IMP
14.12.1.16

Sophos
SmartInstaller
4.98

SUPERAntiSpyware
PUP.SmartInstaller/Variant
10204

Vba32 AntiVirus
AdWare.SmartInstaller
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
34424

Zillya! Antivirus
Adware.SmartInstaller.Win32.3
2.0.0.1973

File size:
36.2 KB (37,093 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
11/19/2014 2:08:35 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.22

CTPH (ssdeep):
384:VDOXnfbX/+PaaBfAvEguK38/WUg5C5bKqbApB4zXi7Vh9J85oz7O6WTa0nH/gou0:kXfT/1VlvYWUbyBL/85U7QBH/JDxRX

Entry address:
0x12A0

Entry point:
83, EC, 1C, C7, 04, 24, 02, 00, 00, 00, FF, 15, 68, 71, 40, 00, E8, 4B, FD, FF, FF, 8D, 74, 26, 00, 8D, BC, 27, 00, 00, 00, 00, A1, 88, 71, 40, 00, FF, E0, 89, F6, 8D, BC, 27, 00, 00, 00, 00, A1, 74, 71, 40, 00, FF, E0, 90, 90, 90, 90, 90, 90, 90, 90, 90, 8B, 0D, 0C, 30, 40, 00, 85, C9, 74, 38, 55, 89, E5, 83, EC, 18, C7, 04, 24, 00, 40, 40, 00, E8, AC, 0B, 00, 00, 52, 85, C0, 74, 23, C7, 44, 24, 04, 0E, 40, 40, 00, 89, 04, 24, E8, 9F, 0B, 00, 00, 83, EC, 08, 85, C0, 74, 09, C7, 04, 24, 0C, 30, 40, 00, FF...
 
[+]

Code size:
4.5 KB (4,608 bytes)

The file luiz_gonzaga_-_discografia.exe has been seen being distributed by the following URL.

Remove luiz_gonzaga_-_discografia.exe - Powered by Reason Core Security