_4allprograms.net__crk_c...business_techedition.exe

SN Pro tool

Maxiget Limited

This is part of a bundled installer which provides applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application _4allprograms.net__crk_c...business_techedition.exe by Maxiget Limited has been detected as adware by 21 anti-malware scanners. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent.
Publisher:
SSPlus  (signed by Maxiget Limited)

Product:
SN Pro tool

Description:
PracticalForce

Version:
4, 0, 37, 0

MD5:
16057f3713403336612c10c745f60b37

SHA-1:
b2811b98343a5ba56d3d1f24224cbfb9cc4914ab

SHA-256:
b2c9dbf218693e0fab32fa80469bb0393dd1d49d5d0bb4c65d17401411693aeb

Scanner detections:
21 / 68

Status:
Adware

Explanation:
This is a modified installer version of the software and bundles additional offers including adware.

Analysis date:
4/16/2024 3:50:48 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.Strictor.72449
6209727

Agnitum Outpost
PUA.4Shared
7.1.1

AhnLab V3 Security
PUP/Win32.Bundler
2014.12.22

Avira AntiVirus
TR/Strictor.40408
7.11.197.16

Bitdefender
Gen:Variant.Application.Bundler.Strictor.72449
1.0.20.1775

Clam AntiVirus
Win.Trojan.Agent-827002
0.98/19815

Dr.Web
Adware.Downware.9348
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.Strictor.72449
9.0.0.4668

ESET NOD32
Win32/4Shared.AE potentially unwanted application
7.0.302.0

F-Prot
W32/S-e896e9f7
v6.4.7.1.166

F-Secure
Riskware.Gen:Variant.Application.Bundler
5.13.68

G Data
Gen:Variant.Application.Bundler.Strictor.72449
14.12.24

K7 AntiVirus
Unwanted-Program
13.188.14395

McAfee
Program.4shared
16.8.708.2

MicroWorld eScan
Gen:Variant.Application.Bundler.Strictor.72449
15.0.0.1065

NANO AntiVirus
Riskware.Win32.Downware.dklsuw
0.28.6.64267

Norman
Gen:Variant.Application.Bundler.Strictor.72449
04.12.2014 14:30:06

Panda Antivirus
Trj/Genetic.gen
14.12.21.09

Reason Heuristics
PUP.MaxigetLimited.l
14.12.21.9

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.26.3

VIPRE Antivirus
Threat.4150696
35418

File size:
43.2 KB (44,216 bytes)

Product version:
4, 0, 37, 0

Copyright:
2014 (c) PPT

Trademarks:
SST LLC.

Original file name:
breaker.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\_4allprograms.net__crk_c...business_techedition.exe

Digital Signature
Signed by:

Authority:
Starfield Technologies, Inc.

Valid from:
11/4/2014 5:59:17 PM

Valid to:
8/15/2016 1:41:32 PM

Subject:
CN=Maxiget Limited, O=Maxiget Limited, L=Limassol, S=Cyprus, C=CY

Issuer:
CN=Starfield Secure Certificate Authority - G2, OU=http://certs.starfieldtech.com/repository/, O="Starfield Technologies, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2B6558A31AA7EB

File PE Metadata
Compilation timestamp:
12/11/2014 10:17:20 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
768:zxYY1An/cSsTG2lYIr/Ki0nJQUR7BSQD9MIoz7mi2xDi:iY1E8bKimJ3BSQpMIoz70xDi

Entry address:
0x3B66

Entry point:
55, 8B, EC, 83, EC, 44, 56, FF, 15, 54, 40, 40, 00, 8B, F0, 8A, 06, 3C, 22, 74, 10, 3C, 20, 7E, 1E, 46, 80, 3E, 20, 7F, FA, EB, 16, 3C, 22, 74, 11, 46, 8A, 06, 84, C0, 75, F5, 3C, 22, 75, 07, EB, 04, 3C, 20, 7F, 07, 46, 8A, 06, 84, C0, 75, F5, 83, 65, E8, 00, 8D, 45, BC, 50, FF, 15, 30, 40, 40, 00, E8, 5B, 00, 00, 00, 68, 04, 60, 40, 00, 68, 00, 60, 40, 00, E8, 32, 00, 00, 00, F6, 45, E8, 01, 59, 59, 74, 06, 0F, B7, 45, EC, EB, 03, 6A, 0A, 58, 50, 56, 6A, 00, 6A, 00, FF, 15, 2C, 40, 40, 00, 50, E8, F8, FC...
 
[+]

Entropy:
5.7176

Developed / compiled with:
Microsoft Visual C++

Code size:
11.5 KB (11,776 bytes)