р”рµс‚сѓрєр°сџ рїрµсѓрµрѕрєр°-nasha_elochka_krasavitsa.exe

Vkontakte DJ Installer

The application р”рµс‚сѓрєр°сџ рїрµсѓрµрѕрєр°-nasha_elochka_krasavitsa.exe has been detected as a potentially unwanted program by 8 anti-malware scanners. This is a setup and installation application, however the file is not signed with an authenticode signature from a trusted source. The file has been seen being downloaded from bun.downloadappscom.biz.
Product:
Vkontakte DJ Installer

Version:
1.9.1.26

MD5:
3c84052427820218a3335bb08b03e8c5

SHA-1:
cf08ad25f9e4c772133e38c4ae6ad6330621729a

SHA-256:
3ac881c4857ee66b361de04b6382a7ea30bc2a61133eeb2078b4b417cb0bc4ab

Scanner detections:
8 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 9:33:58 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Downloader
7.1.1

ESET NOD32
MSIL/VKontakteDJ.A potentially unwanted (variant)
10.12664

Fortinet FortiGate
Riskware/VKontakteDJ
3/23/2016

G Data
Win32.Application.Agent.8JUR6L
16.3.25

Kaspersky
not-a-virus:Downloader.MSIL.VKontakteDJ
14.0.0.473

Panda Antivirus
Generic Suspicious
16.03.23.07

Qihoo 360 Security
Win32/Virus.Downloader.cf1
1.0.0.1077

Sophos
Vkontakte DJLoader (PUA)
4.98

File size:
564 KB (577,536 bytes)

Product version:
1.9.1.26

Copyright:
Copyright © 2015

Original file name:
DjLoader.exe

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
11/10/2015 3:32:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:bXHBtFH4P7qsKQ0jnAt4BknkW3F2nzCs0mhBtFC:jHJH4DBKQ0jnpBknk42zCsRhJC

Entry address:
0x6AFFE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
420.5 KB (430,592 bytes)

The file р”рµс‚сѓрєр°сџ рїрµсѓрµрѕрєр°-nasha_elochka_krasavitsa.exe has been seen being distributed by the following URL.