counter strike 1.6.exe

CHummer

New IT Limited

This is part of a bundled installer which provides applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application counter strike 1.6.exe, “Description is empty” by New IT Limited has been detected as adware by 24 anti-malware scanners. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. It is also typically executed from the user's temporary directory.
Publisher:
Elit -e - Company  (signed by New IT Limited)

Product:
CHummer

Description:
Description is empty

Version:
3, 5, 13, 0

MD5:
58db9cd85cf4ce39b807b1a70122fed6

SHA-1:
8d371bb2fcc4300de68da9571a90dcd0d71f168c

SHA-256:
1c919e6fe9deeb1eea95daa84b84c0687d838cc3f2f6ff30c3fd90753ff93c3c

Scanner detections:
24 / 68

Status:
Adware

Analysis date:
4/25/2024 9:53:01 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.Jaiks.244
827

AegisLab AV Signature
Troj.Dropper.W32.Agent
2.1.4+

Agnitum Outpost
PUA.4Shared
7.1.1

Avira AntiVirus
APPL/Downloader.Gen4
7.11.182.128

AVG
Generic
2015.0.3305

Bitdefender
Gen:Variant.Application.Bundler.Jaiks.244
1.0.20.1520

Clam AntiVirus
Win.Trojan.Agent-785988
0.98/21411

Dr.Web
Adware.Downware.2538
9.0.1.05190

ESET NOD32
Win32/4Shared.Y potentially unwanted application
7.0.302.0

F-Prot
W32/A-1ed09b26
v6.4.7.1.166

F-Secure
Gen:Variant.Application.Bundler
11.2014-31-10_6

G Data
Gen:Variant.Application.Bundler.Jaiks.244
14.10.24

IKARUS anti.virus
Trojan.Win32.Badur
t3scan.1.8.3.0

K7 AntiVirus
Unwanted-Program
13.185.13853

Malwarebytes
PUP.Optional.Elite
v2014.10.31.04

McAfee
PUP-FNX
5600.6961

MicroWorld eScan
Gen:Variant.Application.Bundler.Jaiks.244
15.0.0.912

NANO AntiVirus
Trojan.Win32.4Shared.dfhejw
0.28.6.62995

Reason Heuristics
PUP.NewITLimited.R
14.10.31.3

Sophos
4Share Downloader
4.98

SUPERAntiSpyware
PUP.4Shared/Variant
10267

Vba32 AntiVirus
Trojan.Badur
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
34392

Zillya! Antivirus
Backdoor.PePatch.Win32.44192
2.0.0.1973

File size:
529 KB (541,728 bytes)

Product version:
3, 5, 13, 0

Copyright:
2014

Trademarks:
No

Original file name:
DHelper

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\counter strike 1.6.exe

Digital Signature
Signed by:

Authority:
Starfield Technologies, Inc.

Valid from:
5/14/2014 3:00:04 PM

Valid to:
12/30/2016 10:33:53 AM

Subject:
CN=New IT Limited, O=New IT Limited, L=Nicosia, S=Nicosia, C=CY

Issuer:
CN=Starfield Secure Certificate Authority - G2, OU=http://certs.starfieldtech.com/repository/, O="Starfield Technologies, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
049768F7F19C91

File PE Metadata
Compilation timestamp:
9/5/2014 6:52:27 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:TJBDn7/o5rrBb4pLmadg5rixchdwr3DXBuP:TnnDmCmaQGxc7u3Dm

Entry address:
0x425D8

Entry point:
E8, 3A, BF, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 14, A1, 00, DE, 46, 00, 33, C5, 89, 45, FC, 53, 56, 33, DB, 57, 8B, F1, 39, 1D, BC, 0E, 47, 00, 75, 38, 53, 53, 33, FF, 47, 57, 68, D4, 1C, 46, 00, 68, 00, 01, 00, 00, 53, FF, 15, 94, C1, 45, 00, 85, C0, 74, 08, 89, 3D, BC, 0E, 47, 00, EB, 15, FF, 15, DC, C0, 45, 00, 83, F8, 78, 75, 0A, C7, 05, BC, 0E, 47, 00, 02, 00, 00, 00, 39, 5D, 14, 7E, 22, 8B, 4D, 14, 8B, 45, 10, 49, 38, 18, 74, 08, 40, 3B, CB, 75, F6, 83, C9, FF, 8B, 45, 14, 2B, C1...
 
[+]

Entropy:
6.5910

Code size:
361.5 KB (370,176 bytes)

Remove counter strike 1.6.exe - Powered by Reason Core Security