See: htxp://zulu.zscaler.com/submission/show/8003082c28267b70f50a5722f3e3467f-1337187196 suspicious
Two detections: htxp://vscan.urlvoid.com/analysis/3997430a31904e24f9a00ccbf5ba2f04/Y2FtcGZpcmUtZ3VpdGFyLWV4ZQ==/
Also DrWeb’s online check flags:
Checking: htxp://d3uetqjthbb4x1.cloudfront.net/2.1.587/70352/CampFire_Guitar.exe
Engine version: 7.0.1.2210
Total virus-finding records: 2859348
File size: 142.24 KB
File MD5: 3a779021868c564caa478063107463ba
htxp://d3uetqjthbb4x1.cloudfront.net/2.1.587/70352/CampFire_Guitar.exe - archive NSIS
htxp://d3uetqjthbb4x1.cloudfront.net/2.1.587/70352/CampFire_Guitar.exe/script.bin - Ok
htxp://d3uetqjthbb4x1.cloudfront.net/2.1.587/70352/CampFire_Guitar.exe/_=9A=80\System.dll - Ok
htxp://d3uetqjthbb4x1.cloudfront.net/2.1.587/70352/CampFire_Guitar.exe/downloadmr.exe contains an advertising software Adware.Downware.289
See analysis: htxp://anubis.iseclab.org/?action=result&task_id=18a7907077ebe8d64bdd0a838e5cb19a0 (some trojan kont-c like properties)
polonus