tourboy-3.3.1-setup.exe
Classification: Malicious
tourboy-3.3.1-setup.exe is a malicious file sample. Linked to Bundlore malware. Reported by 1 threat source, last seen 2018-03-07.
Detection summary
- 42 antivirus detections (62% detection ratio)
- 0 IDS alerts
- 0 processes observed
- 3 contacted hosts
- 3 DNS requests
MITRE ATT&CK associations
Malware families: BUNDLORE (S0482)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| bundlore | Maltiverse | 2018-03-07 09:47:04 | 2018-03-07 09:47:04 | S0482 Bundlore |
Tags
bundloreSample information
- Filenames
- tourboy-3.3.1-setup.exe
- File type
- PE32 executable (GUI) Intel 80386, for MS Windows
- Size
- 560856 bytes
- MD5
9d398237edb70a8ac1f5922210951b4a- SHA-1
21efc97c20f435173f609ea0f2d4752d7f190b1a- SHA-256
c3f2711d057e2aa7e2f57e7e56742c72483a99f708e3b34d7617c07082a4711a- SHA-512
c12883143a3b7f944c2f0c40fa92bf569e4da74331c6054abcf643ea03e79fea7c3c88a4d7a748ba17540ea5acae662839c8931645635801f7709f2b31770165- First indexed
- 2018-03-07 09:47:04
- Last updated
- 2026-04-15 01:02:20
Antivirus detections
| Engine | Detection |
|---|---|
| AVG | Win32:Malware-gen |
| AVware | Trojan.Win32.Generic!BT |
| Ad-Aware | Gen:Variant.Application.Bundler.DownloadGuide.48 |
| AhnLab-V3 | PUP/Win32.Generic.C1118821 |
| Arcabit | Trojan.Application.Bundler.DownloadGuide.48 |
| Avast | Win32:Malware-gen |
| BitDefender | Gen:Variant.Application.Bundler.DownloadGuide.48 |
| CAT-QuickHeal | PUA.Freemiumgm2.Gen |
| CrowdStrike | malicious_confidence_100% (D) |
| Cyren | W32/S-58b25de1!Eldorado |
| DrWeb | Trojan.Siggen7.35808 |
| ESET-NOD32 | a variant of Win32/DownloadGuide.D potentially unwanted |
| Emsisoft | Gen:Variant.Application.Bundler.DownloadGuide.48 (B) |
| Endgame | malicious (high confidence) |
| F-Prot | W32/S-58b25de1!Eldorado |
| Fortinet | Riskware/DownloaderGuide |
| GData | Win32.Application.DownloadGuide.T |
| Ikarus | PUA.DownloadGuide |
| Invincea | heuristic |
| K7AntiVirus | Adware ( 004b92681 ) |
| K7GW | Adware ( 004b92681 ) |
| Kaspersky | not-a-virus:HEUR:Downloader.Win32.DownloaderGuide.gen |
| MAX | malware (ai score=99) |
| Malwarebytes | Adware.Downloader |
| McAfee | PUP-FXK |
| McAfee-GW-Edition | BehavesLike.Win32.Downloader.hh |
| MicroWorld-eScan | Gen:Variant.Application.Bundler.DownloadGuide.48 |
| Microsoft | PUA:Win32/DownloadGuide |
| NANO-Antivirus | Trojan.Win32.Covus.eyaiki |
| Qihoo-360 | Win32/Application.a1c |
| SentinelOne | static engine - malicious |
| Symantec | PUA.Downloader |
| TrendMicro | PUA_DownloadGuide.SM |
| TrendMicro-HouseCall | PUA_DownloadGuide.SM |
| VBA32 | BScope.Downloader.DownloaderGuide |
| VIPRE | Trojan.Win32.Generic!BT |
| ViRobot | Adware.Downloadguide.560856.AMR |
| Webroot | Pua.Freemium |
| Yandex | PUA.Downloader! |
| Zillya | Adware.GenericKD.Win32.8298 |
| ZoneAlarm | not-a-virus:HEUR:Downloader.Win32.DownloaderGuide.gen |
| eGambit | Unsafe.AI_Score_99% |
Network contacts
DNS requests
dlg-messages.buzzrin.de dlg-configs.buzzrin.de az687722.vo.msecnd.net