proyecto negro configuracionespc.exe

AutoPlay Media Studio Launcher

The application proyecto negro configuracionespc.exe, “AutoPlay Application” has been detected as a potentially unwanted program by 27 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1610.mediafire.com and multiple other hosts.
Product:
AutoPlay Media Studio Launcher

Description:
AutoPlay Application

Version:
8.0.1.1

MD5:
d58c0d9db7b6135c79b4c86e1148237b

SHA-1:
3545ee70699c7e83d6fb10448096966da5625506

SHA-256:
08a65afdf036d77eddbf654bd4239523ee30a4bc28264227d82d1bd4b30577a5

Scanner detections:
27 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 6:28:21 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.LNK.Gen
393

Agnitum Outpost
PUA.Hacktool
7.1.1

Avira AntiVirus
TR/LNK.Dorkbot.Gen
8.3.2.4

avast!
Win32:Malware-gen
2014.9-160107

AVG
Dropper.Generic6
2017.0.2871

Clam AntiVirus
HackTool.DDOS.HOIC
0.98/21511

Dr.Web
Tool.Dos.15
9.0.1.07

ESET NOD32
Win32/HackTool.VB.NBM
10.12712

Fortinet FortiGate
Riskware/Loic
1/7/2016

F-Prot
W32/Backdoor2.HJAR
v6.4.7.1.166

F-Secure
Worm:W32/Dorkbot.M
11.2016-07-01_5

IKARUS anti.virus
not-a-virus:Hacktool.DOS
t3scan.1.9.5.0

K7 AntiVirus
Trojan
13.212.18088

Kaspersky
DoS.Win32.VB
14.0.0.851

Malwarebytes
HackTool.Hoylecann
v2016.01.07.08

McAfee
Artemis!D58C0D9DB7B6
5600.6527

Microsoft Security Essentials
HackTool:Win32/Hoylecann.B
1.1.12300.0

MicroWorld eScan
Trojan.LNK.Gen
17.0.0.21

NANO AntiVirus
Trojan.Script.Runner.dkmpaa
1.0.10.5081

Panda Antivirus
Trj/CI.A
16.01.07.08

Qihoo 360 Security
Win32/Trojan.1e1
1.0.0.1077

Quick Heal
HackTool.Hoic.g4 (Not a Virus)
1.16.14.00

Rising Antivirus
PE:Trojan.VBInject!1.64FE [F]
23.00.65.16105

Trend Micro House Call
HKTL_DDOSER
7.2.7

Trend Micro
HKTL_DDOSER
10.465.07

Vba32 AntiVirus
DoS.VB
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
45782

File size:
22.4 MB (23,487,788 bytes)

Product version:
8.0.1.1

Copyright:
Runtime Engine Copyright © 2010 Indigo Rose Corporation (www.indigorose.com)

Trademarks:
AutoPlay Media Studio is a Trademark of Indigo Rose Corporation

Original file name:
ams_launch.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
5/18/2010 12:39:19 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:QpQPyPmUnLZ5TnHZsBaTnClnHnzWxzXQs/WBk9zfCFIBugpijxp1Uo:2mUnd5RGKbjWCflugpiFpKo

Entry address:
0x2CB3C

Entry point:
E8, 15, C6, 00, 00, E9, 78, FE, FF, FF, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 10, 06, 45, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 10, 06, 45, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B...
 
[+]

Code size:
253.5 KB (259,584 bytes)

The file proyecto negro configuracionespc.exe has been seen being distributed by the following 2 URLs.

http://download1610.mediafire.com/dsp4zx43oawg/.../Proyecto Negro ConfiguracionesPc.exe

Remove proyecto negro configuracionespc.exe - Powered by Reason Core Security