parasyte - let me hear by fear, and loathing in las vegas.exe

Vkontakte DJ Installer

The application parasyte - let me hear by fear, and loathing in las vegas.exe has been detected as a potentially unwanted program by 23 anti-malware scanners. This is a setup and installation application, however the file is not signed with an authenticode signature from a trusted source. The file has been seen being downloaded from setup.vk-dj.com.
Product:
Vkontakte DJ Installer

Version:
1.9.1.24

MD5:
1b60aba52e4106f06ee143a85d1d01da

SHA-1:
799a17ffde925ec897b3176979f05264a84e3844

SHA-256:
5c605892e28fc15ff3ee9523bcfc5c39bc2f430253c2b7b5d24b94133a1c6b77

Scanner detections:
23 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 7:36:35 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Vkontakte.A
180

AegisLab AV Signature
Suspicious.Cloud.Gen!c
2.1.4+

AhnLab V3 Security
PUP/Win32.Vkontakte
2016.06.08

Avira AntiVirus
APPL/VKontakteDJ.kii
8.3.3.4

Arcabit
Application.Vkontakte.A
1.0.0.696

Baidu Antivirus
PUA.MSIL.VKontakteDJ
4.0.3.1688

Bitdefender
Application.Vkontakte.A
1.0.20.1105

Dr.Web
Program.VKontakteDJ.9
9.0.1.0221

ESET NOD32
MSIL/VKontakteDJ.A potentially unwanted (variant)
10.13611

F-Secure
Application.Vkontakte.A
11.2016-08-08_2

G Data
Application.Vkontakte
16.8.25

K7 AntiVirus
Adware
13.227.19847

Kaspersky
not-a-virus:Downloader.MSIL.VKontakteDJ
14.0.0.-216

McAfee
Artemis!1B60ABA52E41
5600.6314

MicroWorld eScan
Application.Vkontakte.A
17.0.0.663

NANO AntiVirus
Riskware.Win32.VKontakteDJ.dzawoc
1.0.38.8881

Panda Antivirus
Trj/CI.A
16.08.08.05

Rising Antivirus
Trojan.Generic-w955O2loR8Q (Cloud)
23.00.65.16806

Sophos
Vkontakte DJLoader (PUA)
4.98

SUPERAntiSpyware
PUP.VKontakteDJ/Variant
8973

Vba32 AntiVirus
Downloader.MSIL.VKontakteDJ
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
49956

Zillya! Antivirus
Trojan.Farfli.Win32.23072
2.0.0.2910

File size:
563.5 KB (577,024 bytes)

Product version:
1.9.1.24

Copyright:
Copyright © 2015

Original file name:
DjLoader.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\parasyte - let me hear by fear, and loathing in las vegas.exe

File PE Metadata
Compilation timestamp:
11/10/2015 10:18:48 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:TInBtFx4P7qsKQ0jnAt4BknkA3F2nHdscYBtFC:8nJx4DBKQ0jnpBknk629stJC

Entry address:
0x6AF4E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
420 KB (430,080 bytes)

The file parasyte - let me hear by fear, and loathing in las vegas.exe has been seen being distributed by the following URL.