particle_fever_2014_dvdrip_xvid_taste.exe

No Organization Affiliation

The application particle_fever_2014_dvdrip_xvid_taste.exe by No Organization Affiliation has been detected as a potentially unwanted program by 9 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The setup installer will bundle multiple adware offers during download and setup (based on the user's geographical location) including toolbars, extensions and coupon utilities. The file has been seen being downloaded from www.torntv-dl.com and multiple other hosts.
Publisher:
No Organization Affiliation  (signed and verified)

MD5:
2c169a82daad98702119de90167b0480

SHA-1:
92a9de25386f4072d2bedde25e297486730024fe

SHA-256:
61b1c48e94b900311ecd5a2f1534b5ddd7bdd677f2714ecc20fa7f101f7acd6c

Scanner detections:
9 / 68

Status:
Potentially unwanted

Explanation:
Bundles a number of adware programs in the installer.

Analysis date:
12/4/2024 6:50:56 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
APPL/CoolMirage.AD.134
7.11.163.200

avast!
PUP-gen [PUP]
140617-1

Comodo Security
Application.Win32.CoolMirage.~A
18956

Dr.Web
Trojan.DownLoad3.33864
9.0.1.05190

G Data
NSIS.Application.OneClickDownloader
14.7.24

Malwarebytes
PUP.Optional.OneClickDownloader.A
v2014.07.27.11

McAfee
Artemis!2C169A82DAAD
5600.7056

Trend Micro House Call
Suspicious_GEN.F47V0710
7.2.208

Vba32 AntiVirus
Downloader.TornTV
3.12.26.3

File size:
360.8 KB (369,496 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\downloads\particle_fever_2014_dvdrip_xvid_taste.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
6/30/2014 4:30:00 AM

Valid to:
7/1/2015 4:29:59 AM

Subject:
CN=Sarinrat Subindee, OU=Individual Developer, O=No Organization Affiliation, L=Phuket, S=Thailand, C=TH

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7F984B00AFAE5D11D235DCD3C48EB586

File PE Metadata
Compilation timestamp:
12/6/2009 2:20:46 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:dsA7OloYOZIlX4bJaG3itQVUxlFxvs4czMg2XCA0n2KDR3yVQS:DOloYNyJaG38bxlFGmlP8S

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.8726

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file particle_fever_2014_dvdrip_xvid_taste.exe has been seen being distributed by the following 50 URLs.

http://www.torntv-dl.com/.../capitan_america_the_winter_solidier_ita_Full.exe

http://www.torntv-downloader-dl.info/.../Oh_Laura_A_Song_In_My_Head,_A_Demon_In_My_Bed_(2007).exe

http://www.torntv-dl.com/.../here_comes_the_boom_Direct.exe

http://www.torntv-dl.com/.../ek_villan_Full.exe

http://www.torntv-dl.com/.../Windows_7_Loader_Crack_WAT_v2_1_0_.exe

http://www.torntv-dl.com/.../Skalaxy_Jigsaw_01_What_Ska_is_mp3_Full.exe

http://www.torntv-dl.com/.../Race_Gurram_Telugu_2014_[www_way23gp_in]_mp4.exe

http://www.torntv-dl.com/.../Ashampoo_Burning_Studio_14_Build_14_0_1_12_ML_Crack_XenoCoder.exe

http://www.torntv-downloader-dl.info/.../X-Men_Days_Of_Future_Past_2014_720p_(Subs)_HDTS_H264_AAC_2CH-BLiTZCRiEG.exe

http://www.torntv-dl.com/.../The_Sims_4_PC_2013_FULL_GAME_2013_ISO_Site_HACK_Free2013.exe

http://www.torntv-downloader.com/.../torrent.exe

http://www.torntv-dl.com/.../need_for_speed_most_wanted_crack_Verified.exe

http://www.torntv-dl.com/.../saints_row_4_pc.exe

http://www.torntv-dl.com/.../plies_Full.exe

http://www.torntv-dl.com/.../Thomas_Dutronc_Comme_un_manouche_sans_guitare.exe

http://www.torntv-dl.com/.../Hereafter_(2010)_DVDRip_XviD-MAXSPEED.exe

http://www.torntv-dl.com/.../How_to_Train_Your_Dragon_2_(2014).720p.BluRay.x264.YIFY.exe

http://www.torntv-dl.com/.../Call_of_duty_4_[PC-DVD]_[English]_[www.topetorrent.com].exe

Latest 30 of 75 download URLs

Remove particle_fever_2014_dvdrip_xvid_taste.exe - Powered by Reason Core Security