sakura angels free download pc game.exe

Direct Download GTt

This is the OutBrowse Revenyou installer which bundles offers for additional third party applications that may be unwanted and installed without consent. The application sakura angels free download pc game.exe by Direct Download GTt has been detected as adware by 7 anti-malware scanners. The program is a setup application that uses the OutBrowse Revenyou installer. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. The file has been seen being downloaded from get.file22desktop.com.
Publisher:
Direct Download GTt  (signed and verified)

MD5:
01a55734a74a10c131c23884ffebf290

SHA-1:
9930c8f38845d298effc688609cdfedc57209942

SHA-256:
e3d42f13246def7172437f551e498f057da004f312cdb9bee2c707156d31d1ff

Scanner detections:
7 / 68

Status:
Adware

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
12/25/2024 3:22:24 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
PUA/Outbrowse.Gen
7.11.212.146

AVG
Generic
2016.0.3186

ESET NOD32
NSIS/TrojanDownloader.Adload.AL trojan
7.0.302.0

Fortinet FortiGate
W32/ADLOAD.AL!tr
2/26/2015

F-Secure
Riskware.MemScan:Application.Bundler.Outbrowse
5.13.68

Reason Heuristics
PUP.Outbrowse
15.2.26.11

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.26.3

File size:
92.2 KB (94,408 bytes)

File type:
Executable application (Win32 EXE)

Bundler/Installer:
OutBrowse Revenyou (using Nullsoft Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\sakura angels free download pc game.exe

Digital Signature
Authority:
thawte, Inc.

Valid from:
2/17/2015 1:00:00 AM

Valid to:
1/28/2016 12:59:59 AM

Subject:
CN=Direct Download GTt, O=Direct Download GTt, L=Dublin, S=Dublin, C=IE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
0AD81318E83A71271977E435C3D52212

File PE Metadata
Compilation timestamp:
12/5/2009 11:50:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:VpgpHzb9dZVX9fHMvG0D3XJ887NeYRNgKJ+BCydd92kqIzjbanyUXZf2mGq6ZHiB:HgXdZt9P6D3XJveqgKJ+BCkQ5K2Om9E6

Entry address:
0x30FA

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 18, EC, 42, 00, E8, F1, 2B, 00, 00, A3, 64, EB, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 98, 8F, 42, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 60, E3, 42, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 40, 43, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
23.5 KB (24,064 bytes)

The file sakura angels free download pc game.exe has been seen being distributed by the following URL.

Remove sakura angels free download pc game.exe - Powered by Reason Core Security