autorun remover full version.exe

Maxiget Limited

This is part of a bundled installer which provides applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application autorun remover full version.exe by Maxiget Limited has been detected as adware by 24 anti-malware scanners. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. It is also typically executed from the user's temporary directory.
Publisher:
Maxiget Limited  (signed and verified)

Version:
3, 3, 55, 0

MD5:
7244e31aed2e5f4550f18db482e3864e

SHA-1:
c1fd2b3e827b591bdefe1ba44ffe4cb84d255e3b

SHA-256:
ad4e65bf89f61b97ff69b0ee0603dd265ed192ebb44c99c8cb67391eace032d7

Scanner detections:
24 / 68

Status:
Adware

Explanation:
This is a modified installer version of the software and bundles additional offers including adware.

Analysis date:
4/26/2024 8:46:33 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.Jaiks.244
826

Agnitum Outpost
PUA.4Shared
7.1.1

Avira AntiVirus
APPL/Downloader.Gen
7.11.182.180

AVG
Generic
2015.0.3304

Bitdefender
Gen:Variant.Application.Bundler.Jaiks.244
1.0.20.1525

Clam AntiVirus
Win.Trojan.Graftor-1672
0.98/21411

Comodo Security
Application.Win32.4Shared.K
19960

Dr.Web
Adware.Downware.1751
9.0.1.0305

ESET NOD32
Win32/4Shared (variant)
8.10654

F-Prot
W32/A-22cc26dc
v6.4.7.1.166

F-Secure
Gen:Variant.Application.Bundler
11.2014-01-11_7

G Data
Gen:Variant.Application.Bundler.Jaiks.244
14.11.24

IKARUS anti.virus
PUA.4Shared
t3scan.1.8.3.0

K7 AntiVirus
Unwanted-Program
13.185.13866

Malwarebytes
PUP.Optional.4Shared
v2014.11.01.09

McAfee
PUP-FNX
5600.6960

MicroWorld eScan
Gen:Variant.Application.Bundler.Jaiks.244
15.0.0.915

NANO AntiVirus
Riskware.Win32.Downware.ddwtfv
0.28.6.62995

Reason Heuristics
PUP.MaxigetLimited.CC
14.11.1.8

Sophos
4Share Downloader
4.98

SUPERAntiSpyware
PUP.4Shared/Variant
10264

Vba32 AntiVirus
Downloader.GetFaster
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
34424

Zillya! Antivirus
Backdoor.PePatch.Win32.39775
2.0.0.1973

File size:
438.1 KB (448,640 bytes)

Product version:
3, 3, 55, 0

Copyright:
2014

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\autorun remover full version.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
6/3/2014 11:41:06 AM

Valid to:
8/15/2016 9:41:32 AM

Subject:
CN=Maxiget Limited, O=Maxiget Limited, L=Limassol, S=Cyprus, C=CY

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
043F9C868704FA

File PE Metadata
Compilation timestamp:
8/8/2014 6:06:20 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:4sV3WLR3WHchisdVDoqbjqY7D1EbUGJBJFEc29xc5Vz2KEbIY+A:XZWdAkDvDoKeY7D1bG/zB2ELz2KFYZ

Entry address:
0x2C16B

Entry point:
E8, F6, A3, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 14, A1, B8, FD, 44, 00, 33, C5, 89, 45, FC, 53, 56, 33, DB, 57, 8B, F1, 39, 1D, 04, 16, 45, 00, 75, 38, 53, 53, 33, FF, 47, 57, 68, 94, 4F, 44, 00, 68, 00, 01, 00, 00, 53, FF, 15, 60, 21, 44, 00, 85, C0, 74, 08, 89, 3D, 04, 16, 45, 00, EB, 15, FF, 15, E4, 20, 44, 00, 83, F8, 78, 75, 0A, C7, 05, 04, 16, 45, 00, 02, 00, 00, 00, 39, 5D, 14, 7E, 22, 8B, 4D, 14, 8B, 45, 10, 49, 38, 18, 74, 08, 40, 3B, CB, 75, F6, 83, C9, FF, 8B, 45, 14, 2B, C1...
 
[+]

Entropy:
6.8739

Code size:
256.5 KB (262,656 bytes)

Remove autorun remover full version.exe - Powered by Reason Core Security