{517058c6-2455-436c-bcec-c1c4b6c929ba}

Innova Soluyushns OOO

The file {517058c6-2455-436c-bcec-c1c4b6c929ba} by Innova Soluyushns OOO has been detected as adware by 26 anti-malware scanners.
Publisher:
Innova Soluyushns OOO  (signed and verified)

MD5:
2029f444b3e8b4c93b26c018b5f3a013

SHA-1:
b26beb0eb9ec5e8079ccb31c6496a5e14d2275f5

SHA-256:
cd909471e15aff19aaad14c1702b48305f6bc36a125ea395682bac2d3195f27f

Scanner detections:
26 / 68

Status:
Adware

Analysis date:
4/16/2024 12:39:34 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Kazy.464664
6217246

Agnitum Outpost
PUA.Downloader
7.1.1

AhnLab V3 Security
PUP/Win32.LoadMoney
2015.04.02

Avira AntiVirus
TR/Crypt.XPACK.Gen
7.11.30.172

avast!
Win32:LoadMoney-RI [PUP]
150319-0

AVG
Win32/Heur
2014.0.4311

Bitdefender
Gen:Variant.Adware.Kazy.464664
1.0.20.455

Comodo Security
MalCrypt.Indus!
21611

Dr.Web
Trojan.LoadMoney.445
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Adware.Kazy.464664
9.0.0.4799

ESET NOD32
Win32/Adware.LoadMoney.AHU application
7.0.302.0

F-Secure
Gen:Variant.Adware.Kazy
5.13.68

G Data
Gen:Variant.Adware.Kazy.464664
15.4.25

IKARUS anti.virus
not-a-virus:Downloader.Plocust
t3scan.1.8.9.0

K7 AntiVirus
Unwanted-Program
13.202.15452

Kaspersky
not-a-virus:Downloader.Win32.LMN
15.0.0.543

McAfee
Program.LoadMoney
16.8.708.2

MicroWorld eScan
Gen:Variant.Adware.Kazy.464664
16.0.0.273

NANO AntiVirus
Trojan.Win32.LMN.dnohkl
0.30.8.659

Norman
Gen:Variant.Adware.Kazy.464664
03.12.2014 13:20:04

Panda Antivirus
Trj/Genetic.gen
15.04.01.10

Reason Heuristics
PUP.InnovaSoluyushnsOOO
15.4.1.10

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
23.00.65.15330

Sophos
Mal/LdMon-B
4.98

Vba32 AntiVirus
Downloader.LMN
3.12.26.3

VIPRE Antivirus
Threat.4657539
38950

File size:
577.9 KB (591,752 bytes)

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/11/2014 3:00:00 AM

Valid to:
11/12/2015 2:59:59 AM

Subject:
CN=Innova Soluyushns OOO, O=Innova Soluyushns OOO, STREET="Mukomolny, 2/1", L=Moscow, S=Moscow region, PostalCode=123290, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
5B6A93520D54B6626ADB1AF5B6FDE0A0

File PE Metadata
Compilation timestamp:
2/3/2015 1:23:49 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.1

CTPH (ssdeep):
6144:mi935R/rP0+8pRoDfSvxp7C8RkZciGtzC1qEZjM5i4myvxZeO+RT4rgxAH27S9Hq:d1/T0f5DkZlqz5iKZIR0S7S3OQV/gJ

Entry address:
0xC084

Entry point:
F8, 33, 5C, 24, FC, F7, 44, 24, F0, 91, B2, 9B, DE, FC, 95, FC, 03, 1C, 24, F9, 21, E8, C1, F9, 16, C1, C3, 1D, 25, B7, 44, 67, AD, 0F, BA, E6, 0A, 33, 2C, 24, C1, DD, 09, 90, 85, 15, 31, 3F, 45, 00, C1, D9, 15, 85, 5C, 24, 0C, 90, C1, E2, 08, 39, 54, 24, 0C, 87, DA, 81, ED, 8F, CC, 9C, 27, F5, C1, E1, 0F, F9, 40, F8, 42, F5, FC, 0F, BA, E3, 1D, C1, F9, 1D, 11, D5, 8B, 7C, 24, 0C, 29, C5, FC, 0F, BA, E1, 15, 4D, C1, D0, 16, 0F, BA, E8, 12, C1, E7, 12, 41, C1, C2, 00, FC, C1, E8, 1B, 89, F2, FC, C1, D5, 04...
 
[+]

Code size:
525.5 KB (538,112 bytes)

Remove {517058c6-2455-436c-bcec-c1c4b6c929ba} - Powered by Reason Core Security