228778-674252-eurotraductor.exe

Onekit Internet S,L

The application 228778-674252-eurotraductor.exe by Onekit Internet S,L has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Onekit Internet S,L  (signed and verified)

MD5:
a114e24fbd6445351f3c08d6b88c3f56

SHA-1:
2fbc2df80c93dee296f995e598a5f2e8fa0a069b

SHA-256:
09518a623bde6d192d8cd102f3b3e54c0dc7eda325af6feb3c7054f66196509b

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/19/2024 2:08:35 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.OnekitInternet (M)
17.3.13.12

File size:
1.1 MB (1,153,032 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\228778-674252-eurotraductor.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/15/2013 6:25:37 PM

Valid to:
5/18/2016 12:11:52 PM

Subject:
E=info@onekit.com, CN="Onekit Internet S,L", O="Onekit Internet S,L", L=Cerdanyola Del Valles, S=Barcelona, C=ES

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11216C6B688869B7980323D94C3965BBB528

File PE Metadata
Compilation timestamp:
2/24/2012 8:19:54 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x3883

Code size:
27.5 KB (28,160 bytes)

Remove 228778-674252-eurotraductor.exe - Powered by Reason Core Security