va - 54 best of lounge cafe and chill out bar music, chill lounge buddha selection.torrent.exe

Artur Arakelyan

The executable va - 54 best of lounge cafe and chill out bar music, chill lounge buddha selection.torrent.exe has been detected as malware by 1 anti-virus scanner. The program is a setup application that uses the Nullsoft Install System installer. The file has been seen being downloaded from dl.youfile.org.
Publisher:
Artur Arakelyan  (signed and verified)

MD5:
d6eb0474fa709e92a0e3465668127af4

SHA-1:
e01a656a56c7d521bee855b0ec4b9b005272625a

SHA-256:
2c70e446fc36fd643a6312b144a9dd44865620728448c26b28470673065028f8

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/15/2024 3:10:39 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.1.10.21

File size:
224.3 KB (229,656 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Install System

Common path:
C:\users\{user}\downloads\va - 54 best of lounge cafe and chill out bar music, chill lounge buddha selection.torrent.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
10/15/2015 9:10:52 AM

Valid to:
10/15/2017 8:02:32 AM

Subject:
E=a.artur@bk.ru, CN=Artur Arakelyan, L=Almaty, S=Almaty, C=KZ

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
13144462E4B096

File PE Metadata
Compilation timestamp:
1/5/2012 8:21:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.22

Entry address:
0x4109

Entry point:
55, 89, E5, 57, 56, 53, 81, EC, AC, 01, 00, 00, FF, 15, 74, 93, 42, 00, C7, 04, 24, 01, 80, 00, 00, FF, 15, 58, 94, 42, 00, 53, C7, 04, 24, 00, 00, 00, 00, FF, 15, 98, 94, 42, 00, 56, A3, 30, 7B, 42, 00, C7, 04, 24, 08, 00, 00, 00, E8, 8B, 3B, 00, 00, A3, 8C, 7B, 42, 00, 8D, 85, 84, FE, FF, FF, 57, C7, 44, 24, 10, 00, 00, 00, 00, C7, 44, 24, 0C, 60, 01, 00, 00, 89, 44, 24, 08, C7, 44, 24, 04, 00, 00, 00, 00, C7, 04, 24, A9, B2, 40, 00, FF, 15, AC, 94, 42, 00, 83, EC, 14, C7, 44, 24, 04, AA, B2, 40, 00, C7...
 
[+]

Entropy:
6.8195

Code size:
34 KB (34,816 bytes)

The file va - 54 best of lounge cafe and chill out bar music, chill lounge buddha selection.torrent.exe has been seen being distributed by the following URL.

https://dl.youfile.org/.../MTAwMTtodHRwJTNBJTJGJTJGbXlrbGFkLm9yZyUyRmZpbGVzJTJGZGwlMkY1ODU3YzhjZWJjZmQ0NDM4LnRvcnJlbnQ7bmFtZT1WQSstKzU0K0Jlc3Qrb2YrTG91bmdlK0NhZmUrYW5kK0NoaWxsK091dCtCYXIrTXVzaWMlMkMrQ2hpbGwrTG91bmdlK0J1ZGRoYStTZWxlY3Rpb24udG9ycmVudDtzaXplPTM5NTk2O3R5cGU9dG9ycmVudA==