{c083875f-568c-0375-ac58-ceb2e29e8af0}-1000.exe

The application {c083875f-568c-0375-ac58-ceb2e29e8af0}-1000.exe has been detected as a potentially unwanted program by 19 anti-malware scanners. It is built using the Crossrider cross-browser extension platform. While the file utilizes the Crossrider framework and delivery services, it is not owned by Crossrider.
MD5:
2898c9898ee37f7b230843c5925ba48c

SHA-1:
2542493e6ff9d198fc19bde40559b71c855a4d39

SHA-256:
8c59c0d09c5e3f8088577f3cd113581c0c96d96f3812acb193b8d7e3489ac68c

Scanner detections:
19 / 68

Status:
Potentially unwanted

Explanation:
The software may change the browser's home page and search provider settings as well as display advertisements.

Analysis date:
4/26/2024 11:21:08 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKDZ.28560
5876669

Avira AntiVirus
ADWARE/MultiPlug.Gen4
8.3.1.6

Arcabit
Trojan.Generic.D6F90
1.0.0.425

AVG
Adware Generic6.AQOV
2015.0.4355

Bitdefender
Trojan.GenericKDZ.28560
1.0.20.1070

Dr.Web
Trojan.Crossrider1.29239
9.0.1.05190

Emsisoft Anti-Malware
Trojan.GenericKDZ.28560
10.0.0.5366

F-Prot
W32/S-cd4dce0d
v6.4.7.1.166

F-Secure
Trojan.GenericKDZ.28560
5.14.151

G Data
Trojan.GenericKDZ.28560
15.8.25

IKARUS anti.virus
AdWare.MultiPlug
t3scan.1.9.5.0

Kaspersky
not-a-virus:HEUR:AdWare.Win32.Generic
14.0.0.1642

MicroWorld eScan
Trojan.GenericKDZ.28560
16.0.0.642

NANO AntiVirus
Trojan.Win32.Crossrider1.droawd
0.30.24.2668

Norman
Trojan.GenericKDZ.28560
07.07.2015 03:10:29

nProtect
Trojan.GenericKDZ.28560
15.07.31.01

Quick Heal
Adware.MultiPlug.GN5
8.15.14.00

Sophos
PUA 'MultiPlug' (of type Adware)
5.15

Vba32 AntiVirus
suspected of Heur.Malware-Cryptor.Multiplug
3.12.26.4

File size:
2.2 MB (2,358,784 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\ProgramData\microsoft\microsoft antimalware\localcopy\{c083875f-568c-0375-ac58-ceb2e29e8af0}-1000.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
6144:YDA5lYJpGSCAn/06Rz2sN7DlSy3tjxsS3R8pgF0dMvVK94ra42:YDAfyQHo/0khN3lSy3HapgidgVo4rn2

Entry point:
B2, A5, 6F, FF, FC, FF, FF, FF, FB, FF, FF, FF, 00, 00, FF, FF, 47, FF, FF, FF, FF, FF, FF, FF, BF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, 1F, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF...
 
[+]

Entropy:
1.2806