the-sims-3-2f-sims-3-2c-2c-i-2c-na-russkom-yazyke-bez-dopolneniy2c-kak-bez-virusov.exe

IT AUDIT AND COMPLIANCE SERVICES LLC

The executable the-sims-3-2f-sims-3-2c-2c-i-2c-na-russkom-yazyke-bez-dopolneniy2c-kak-bez-virusov.exe has been detected as malware by 1 anti-virus scanner. This is a setup program which is used to install the application. The file has been seen being downloaded from mybestfileload.com.
Publisher:
IT AUDIT AND COMPLIANCE SERVICES LLC  (signed and verified)

MD5:
ed4705a07197c7394387d43fb6aa5c0a

SHA-1:
dc484f0da9ac94798eb6d54f2c7e18ee1159af12

SHA-256:
c7f8fb07e837661cff94070c8a4f937bd35a39a440dd1af75ae48bca80e37212

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/18/2024 3:20:20 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.3.8.10

File size:
147 KB (150,568 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\the-sims-3-2f-sims-3-2c-2c-i-2c-na-russkom-yazyke-bez-dopolneniy2c-kak-bez-virusov.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/10/2015 3:00:00 AM

Valid to:
11/10/2016 2:59:59 AM

Subject:
CN=IT AUDIT AND COMPLIANCE SERVICES LLC, OU=IT, O=IT AUDIT AND COMPLIANCE SERVICES LLC, STREET="vul. Vilyamsa Akademika, 6 D", L=Kiev, S=Kiev, PostalCode=03189, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00BB3CCAF99CC223A1AD34177B638A3BC8

File PE Metadata
Compilation timestamp:
12/15/2015 2:13:15 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0xAD23

Entry point:
55, 8B, EC, B8, 60, 12, 00, 00, E8, 90, 64, FF, FF, 53, 56, 57, 33, F6, 56, 56, FF, 15, B8, C1, 40, 00, 8B, 1D, 24, C0, 40, 00, 56, FF, D3, FF, 15, 20, C0, 40, 00, 56, FF, D3, BF, 00, 01, 00, 00, A3, 9C, 06, C1, 00, 57, 8D, 8D, E0, FD, FF, FF, A3, 98, 06, C1, 00, 51, 89, 35, 80, 03, 41, 00, 50, 89, 35, 84, 03, 41, 00, FF, 15, 7C, C0, 40, 00, 56, 68, A0, 06, C1, 00, 57, 8D, 85, E0, FD, FF, FF, 50, FF, 15, 70, C0, 40, 00, 68, 78, 01, 41, 00, 57, FF, 15, 78, C0, 40, 00, 89, 45, EC, 85, C0, 74, 0A, 33, C9, 66...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
41.5 KB (42,496 bytes)

The file the-sims-3-2f-sims-3-2c-2c-i-2c-na-russkom-yazyke-bez-dopolneniy2c-kak-bez-virusov.exe has been seen being distributed by the following URL.

http://mybestfileload.com/dl2.php?link=672/0/95918022/.../eyJzdWJjSWQiOiI5NTkxODAyMiIsInNpdGVJZCI6IjExNDYzIiwibGVuZElkIjowLCJmaWxlVXJsIjoiaHR0cDpcL1wvbG9hZGxlYWRlci5vcmdcL0xvYWRMZWFkZXIuZXhlIiwiZmlsZU5hbWUiOiJUaGUtU2ltcy0zLSUyRi1TaW1zLTMtJTJDLSUyQy1JLSUyQy1OYS1SdXNza29tLVlhenlrZS1CZXotRG9wb2xuZW5peSUyQy1LYWstQmV6LVZpcnVzb3YiLCJmaWxlU2l6ZSI6IjM1NjUxNTgiLCJmaWxlVHlwZSI6IjYifQ,,