ca form 565 instructions downloader.zip

The file ca form 565 instructions downloader.zip has been detected as a potentially unwanted program by 19 anti-malware scanners. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install. The file has been seen being downloaded from www2.mymediadownloadstwo.com.
MD5:
f65a410a00926a9f313097533d53e1d0

SHA-1:
d89c7c5c7b120cb6d47af76198e68713b5ee3581

SHA-256:
13d61920be0431ebd25e7eabbd56a843000182adceffe2ff8c20ec83dd5fbc7e

Scanner detections:
19 / 68

Status:
Potentially unwanted

Analysis date:
5/17/2025 2:35:19 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Application.Jatif.103
6612695

Avira AntiVirus
ADWARE/Adware.Gen2
7.11.212.246

avast!
Win32:Adware-gen [Adw]
2014.9-150228

AVG
Amonetize
2016.0.3184

Bitdefender
Gen:Variant.Application.Jatif.103
1.0.20.295

Emsisoft Anti-Malware
Gen:Variant.Application.Jatif.103
9.0.0.4799

ESET NOD32
Win32/Amonetize.DU potentially unwanted application
7.0.302.0

Fortinet FortiGate
Riskware/Amonetize
2/28/2015

F-Secure
Gen:Variant.Application.Jatif
11.2015-28-02_7

G Data
Gen:Variant.Application.Jatif.103
15.2.25

K7 AntiVirus
Trojan
13.1915118

Kaspersky
not-a-virus:AdWare.Win32.Amonetize
15.0.0.543

McAfee
Artemis!D0563FBCBDE8
5600.6840

MicroWorld eScan
Gen:Variant.Application.Jatif.103
16.0.0.177

NANO AntiVirus
Riskware.Win32.Amonetize.dojldq
0.30.0.296

Panda Antivirus
PUP/MultiToolbar.A
15.02.28.09

Sophos
PUA 'Amonetize'
5.11

Trend Micro House Call
Suspici.68E9C81E
7.2.59

VIPRE Antivirus
Trojan.Win32.Generic
38004

File size:
369.9 KB (378,818 bytes)

Common path:
C:\users\{user}\downloads\ca form 565 instructions downloader.zip

The file ca form 565 instructions downloader.zip has been seen being distributed by the following URL.

Remove ca form 565 instructions downloader.zip - Powered by Reason Core Security