clash-of-clans.exe

Senaga

Delivery Superb (Fried Cookie Ltd.)

The Fried Cookie installer utilizes the InstallCore download manager which may bundle additional offers for various ad-supported toolbars, extensions and utilities. The application clash-of-clans.exe, “Senaga Setup ” by Delivery Superb (Fried Cookie) has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the installCore installer. The setup program uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions.
Publisher:
Delivery Superb (Fried Cookie Ltd.)  (signed and verified)

Product:
Senaga

Description:
Senaga Setup

MD5:
e272a798e4eee91f9e5d6760e76f16ac

SHA-1:
ee3fe313a4e78432707efb1431b8ab36a9e8630f

SHA-256:
dd9850dcf124099ced6afb341afc7aab401423deb92aff858fe30b077762b865

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
5/13/2024 10:54:10 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.InstallCore.FC.Installer (M)
16.6.14.3

File size:
1001.8 KB (1,025,856 bytes)

Product version:
5.0.7

Copyright:
Internet

File type:
Executable application (Win32 EXE)

Bundler/Installer:
installCore (using Inno Setup)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\clash-of-clans.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/17/2015 11:59:53 AM

Valid to:
6/22/2016 3:54:14 PM

Subject:
CN=Delivery Superb (Fried Cookie Ltd.), O=Delivery Superb (Fried Cookie Ltd.), L=Tel Aviv, C=IL

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11211DDE033C8F24FD358ED7B6271AD4DE2B

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:xzi7wEz3TOGufAhg805N9n79z4Jv6dVhEgdUv:xWNz3T57Z0Vnhz4Jv6fhxdUv

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Entropy:
7.9314

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file clash-of-clans.exe has been seen being distributed by the following 37 URLs.

http://www.downloadclearbest.com/c?x=K7btXk/WTioCN4c2EOpBi4wWbKJAz/wVMfthlS9sd1g=&c=LNxzXDBO2eGymZf8oSl0eelFjyD9fa/bFLkX5VaAFNXCTLhQT8PTsPIBt7QGGoUqevv1Cy722Z7w18lwtSdluy457SigMszB0GclO3vryoM3 NTd uLV7EZ8ic0WhsST2HhKbB3jnVIRSNGM8vY2NXMmW/n8NT0r0PoIhQmLXyE=&e=0&downloadAs=Clash-of-Clans.exe&fallback_url=http://softdownload3.com/s4m/.../Clash-of-Clans.exe

http://www.downloadclearbest.com/c?x=ZtX62eooQLJcrMlCA2Ruy3XMD ec2UqRkOF611vVrXI=&c=9kFBupbRUst5jq1WhKti8bzwBefgdSJeNHnjzQDgY2s8EEiO3Vx 1Vy6P2Rji3EDxc3yY4pZJzBdDCWfwxBQfb51SYX4KH63PwKjbZikIYdxmeg7 uOp1RnX1kG61i1WN8u NGN1knejF0bjmFVLT1i74rgGSMbwUOE5y Bwe6k=&e=0&downloadAs=Clash-of-Clans.exe&fallback_url=http://softdownload3.com/s4m/.../Clash-of-Clans.exe

http://www.downloadclearbest.com/c?x=zl2u1WxSrKE bS8NcJK7IbAY2tUckhfWuVxugQRYpj0=&c=Vzvn3oWNH2E534n ktTnWAq164LFWUG9tQGLvPxlg8tUu7Uh7yQvTQbJb7NcjHAn27D7rnO8o0ME7jiYbWvAZGqgAd6fhOOtlG h5x2FXV3tJ5Mgl8VNgnyQaTkqGyouWr/2rCd8/b66wXJZygPjWuxC X8hp2mkJIq7yNsXuUM=&e=0&downloadAs=Clash-of-Clans.exe&fallback_url=http://softdownload3.com/s4m/.../Clash-of-Clans.exe

http://www.downloadclearbest.com/c?x=eu40Rl8LqlllonIy/G4oVCW5CuV/lyVATpezANfDi68=&c=H5iofw15HQo0OMk6o5H50vu1WGjAJlHmckmax5p13U6bqF6TL2lNfEUStG3bp6kQqYjK0TCBJLMCoKWpxHygSACmC0q90vfHfJDPNY4cUQ5Onafqj5kOQjamBEiLitUbUoBX093k1oSsepbsO06Iitn37x00443TtGWXQ6Ka0a4=&e=0&downloadAs=Clash-of-Clans.exe&fallback_url=http://softdownload3.com/s4m/.../Clash-of-Clans.exe

http://www.downloadclearbest.com/c?x=9kFoc4bmVEHdZPl0hamo9qL4o1HkbcIctmsnbp5GCR0=&c=1M8IIc0rURAbTmkXq9Dvyi8Ifs M VqZud3568/oiXVcvLflWX ZA3Vi9w MJCLBJmn4OPPw5SkFu78kHEJEPs10okdb27QXOxy7ard82Ax2HIDvQM/pD//OYDeQ5ZcuT/ GRl1lVDPs76QsJlNSUIHyaI9tIyHggtzIBXBZiTY=&e=0&downloadAs=Clash-of-Clans.exe&fallback_url=http://softdownload3.com/s4m/.../Clash-of-Clans.exe

http://www.downloadclearbest.com/c?x=ULZd3uOm76AXK7JZHr9M2woraQsSnCHjqKOpRmA1cxI=&c=MpB46BV11oMc8/NopGnzEWCDhAJVFnXQtQP 0TfFNgiyM9b1zlG8IJxNdEVfKvajoRSeHQU/ZDz3QFstsDOV/BhZOZ8gCBRTC08CP6jfAGWqGwiOpKJJJ1FM3TmGlst4sakKRnM wnNOBu3q Ct/CeX6I42nFSVUYx/T8iL/co=&e=0&downloadAs=Clash-of-Clans.exe&fallback_url=http://softdownload3.com/s4m/.../clash-of-clans.exe

Latest 30 of 37 download URLs

Remove clash-of-clans.exe - Powered by Reason Core Security