تسيير المخزونات وفق النظام المحاسبي الجديد.exe

premium

New IT Limited

This is a bundle installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application تسيير المخزونات وفق النظام المحاسبي الجديد.exe by New IT Limited has been detected as adware by 24 anti-malware scanners. The program is a setup application that uses the New IT Desktop Setup installer.
Publisher:
C  (signed by New IT Limited)

Product:
premium

Description:
DWD

Version:
3, 3, 9, 0

MD5:
dd09d74ee3ebb48d1991b1a2a8014a83

SHA-1:
e9922c61ecf0b90b4770607ce733a6b876c10960

SHA-256:
b664de8886f1d31248aee9d648272520d576b5188f8a927a1f1b72fd45521608

Scanner detections:
24 / 68

Status:
Adware

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
4/26/2024 12:14:51 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Graftor.152700
6496598

Agnitum Outpost
PUA.4Shared
7.1.1

Avira AntiVirus
APPL/Downloader.Gen
7.11.206.64

avast!
Win32:FourShared-D [PUP]
150129-1

AVG
Adware BundleApp.CJ
2014.0.4257

Bitdefender
Gen:Variant.Graftor.152700
1.0.20.155

Clam AntiVirus
Win.Adware.Strictor-18
0.98/20008

Dr.Web
Adware.Downware.2538, Adware.Downware.2460
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Graftor.152700
9.0.0.4799

ESET NOD32
Win32/4Shared.Q potentially unwanted application
7.0.302.0

F-Prot
W32/A-e976c249
v6.4.7.1.166

F-Secure
Gen:Variant.Graftor.152700
5.13.68

G Data
Gen:Variant.Graftor.152700
15.1.25

IKARUS anti.virus
PUA.4Shared.Q
t3scan.1.8.6.0

K7 AntiVirus
Unwanted-Program
13.193.14818

McAfee
PUP-FNX
5600.6869

MicroWorld eScan
Gen:Variant.Graftor.152700
16.0.0.93

NANO AntiVirus
Riskware.Win32.Downware.cwtswn
0.30.0.65070

Norman
Gen:Variant.Graftor.152700
03.12.2014 13:20:04

Reason Heuristics
PUP.New IT Limited
15.1.31.8

Sophos
PUA '4Share Downloader'
5.10

Vba32 AntiVirus
Downloader.GetFaster
3.12.26.3

VIPRE Antivirus
Threat.4150696
36694

Zillya! Antivirus
Downloader.GetFaster.Win32.2
2.0.0.2049

File size:
609.1 KB (623,720 bytes)

Product version:
3, 3, 9, 0

Copyright:
2014

Trademarks:
-

File type:
Executable application (Win32 EXE)

Bundler/Installer:
New IT Desktop Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\????? ????????? ??? ?????? ???????? ??????.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
12/30/2013 8:33:53 AM

Valid to:
12/30/2016 8:33:53 AM

Subject:
CN=New IT Limited, O=New IT Limited, L=Nicosia, S=Nicosia, C=CY

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
04225A281DFF69

File PE Metadata
Compilation timestamp:
3/21/2014 1:59:48 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:dJJit5xRhMPR0qu4eXHUHBvct7K0t9nfBuIeG:dmaR0qu4eEBvwmQ9rb

Entry address:
0x5B4A2

Entry point:
E8, 12, BF, 00, 00, E9, 78, FE, FF, FF, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B, 4C, 24, 04, 2B, C1, C3, 8D, 41, FE, 8B, 4C...
 
[+]

Code size:
464.5 KB (475,648 bytes)