ubisoftgamelauncherinstaller.exe

Ubisoft Massive

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from s7312.chomikuj.pl and multiple other hosts.
Publisher:
Ubisoft Massive  (signed and verified)

MD5:
016f13e8e87603edf8562a90f7955c11

SHA-1:
886ca6ace0b3509d4998fa3a2c7badf45fa1bcb9

SHA-256:
330b2080c2febcb4b61f24b6af97cd565e21e485d447034ade6fe9391e605e82

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/16/2024 3:55:08 PM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Trojan.Injector!1.65E8
23.00.65.14328

File size:
23 MB (24,088,192 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\downloads\ubisoftgamelauncherinstaller.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/24/2010 7:00:00 PM

Valid to:
1/24/2013 6:59:59 PM

Subject:
CN=Ubisoft Massive, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Ubisoft Massive, L=Malmo, S=Skane, C=SE

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5B3086773A37FEF032E4C1F177E129F2

File PE Metadata
Compilation timestamp:
12/5/2009 5:50:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:W9tP5BmsekWcub5Wf3YbxfbDWO+YqJFB72WGvEM6OiRFipZ8iYolvAuvqwWvvLTX:Wv5g9cS5eAViX2WJC+YKiKXJApW4QFlD

Entry address:
0x30FA

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 18, EC, 42, 00, E8, F1, 2B, 00, 00, A3, 64, EB, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 98, 8F, 42, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 60, E3, 42, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 40, 43, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Entropy:
7.9934

Packer / compiler:
Nullsoft install system v2.x

Code size:
23.5 KB (24,064 bytes)

The file ubisoftgamelauncherinstaller.exe has been discovered within the following programs.

Assassin's Creed II  by Ubisoft
Assassin's Creed II is a historical action-adventure open world stealth video game developed by Ubisoft Montreal and published by Ubisoft.
www.ubi.com
1% remove it
Far Cry 3: Blood Dragon is a first-person shooter video game developed by Ubisoft Montreal and published by Ubisoft. It is a stand-alone expansion to the 2012 video game Far Cry 3.
far-cry.ubi.com/fc3blooddragon/en-us/home/index.aspx
12% remove it
PunkBuster Services  by Even Balance, Inc.
PunkBuster is a computer program that is designed to detect software used for cheating in online games. It does this by scanning the memory contents of the local machine. A computer identified as using cheats may be banned from connecting to protected servers.
www.evenbalance.com/index.php?page=pbsvcfaq.php
11% remove it
Ubisoft Game Launcher  by Ubisoft
The Ubisoft Game Launcher used to run UBISOFT games.
22% remove it
Uplay  by Ubisoft
Uplay is a digital distribution, digital rights management, multiplayer and communications service created by Ubisoft to provide an experience similar to the achievements/trophies offered by various other game companies.
4% remove it
 
Powered by Should I Remove It?

The file ubisoftgamelauncherinstaller.exe has been seen being distributed by the following 10 URLs.

http://s7312.chomikuj.pl/File.aspx?e=1qpWbED8TTlGfimoBQc6R123WLRG8lp1d5zkoHNX6vFLUkHNiGpE9oV8nNjxV5LT4Zk-K40b1OddZ5ioqCiW3rCYtaoQT9fd4g8XWAGP4GbTLz-2AFDGjQ_OxKt4bnJogqXRmMwdWLAQVBJiGpBstHk6xfKdEbhx6270Tb2VgVA&pv=2

http://www.farmupdatebits.com/c?x=r41 RPFxiqRPbtRiQsvVIX3DrQzAsuFQ/740JneSBuQ=&c=E9p6MBBAfXhNmN7sdMKSja6MoliUnScYDEJW6FhpbRWstmW2okpvM3dZc6Mx95qk1lMIK1mGgSkpfUwSSMJCJBge/.../buppetJ0ZOCbdrzL

http://www.farmupdatebits.com/c?x=Ur2L1R2AIUEYIIA9c ik3QZsNhvhvwDvRiZVWCkol I=&c=QeROqeViOMRS02xw7Q 957Xm4umQWbmZma/V5ZeE7ax3 hqNiKaMokT5tofS8SqJ11A8f7l7 D9/Vy5Y/NI7yUCtUNpWhYVA4Ajh6Ruj4B4klAqSK/.../hbLuluSRENH0v8NpT3FgqxjJRiAa1M9aRr1UkiHIg0wyP0=

Scan ubisoftgamelauncherinstaller.exe - Powered by Reason Core Security