atube-catcher-3-8-8007-multi-win.exe

The application atube-catcher-3-8-8007-multi-win.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. The file has been seen being downloaded from atube-catcher.br.uptodown.com.
MD5:
5fdc4e86e05fc33a004abca3b450a382

SHA-1:
f95e977a66e98c90fc4b8df1b865beb90a5b1541

SHA-256:
be6eb4141d4faed715117e63cfa440f0704092862a1d046d27edf128eeb2eb1c

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
5/6/2024 7:50:40 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.aTube (L)
16.7.29.5

File size:
57.3 KB (58,660 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\atube-catcher-3-8-8007-multi-win.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
768:9mdG81hNX2gPEAe8O7MrLcZg8Psrgg71JPgVGJFJEBl:9mdG81hNXI9z7Mr4G8PsVOGJFSP

Entry point:
3C, 21, 44, 4F, 43, 54, 59, 50, 45, 20, 68, 74, 6D, 6C, 3E, 0A, 3C, 68, 74, 6D, 6C, 20, 78, 6D, 6C, 6E, 73, 3D, 22, 68, 74, 74, 70, 3A, 2F, 2F, 77, 77, 77, 2E, 77, 33, 2E, 6F, 72, 67, 2F, 31, 39, 39, 39, 2F, 78, 68, 74, 6D, 6C, 22, 20, 78, 6D, 6C, 3A, 6C, 61, 6E, 67, 3D, 22, 70, 74, 2D, 42, 52, 22, 20, 6C, 61, 6E, 67, 3D, 22, 70, 74, 2D, 42, 52, 22, 20, 70, 72, 65, 66, 69, 78, 3D, 22, 6F, 67, 3A, 20, 68, 74, 74, 70, 3A, 2F, 2F, 6F, 67, 70, 2E, 6D, 65, 2F, 6E, 73, 23, 22, 3E, 0A, 3C, 68, 65, 61, 64, 3E, 0A...
 
[+]

The file atube-catcher-3-8-8007-multi-win.exe has been seen being distributed by the following URL.

Remove atube-catcher-3-8-8007-multi-win.exe - Powered by Reason Core Security