counter strike 1.6.exe

CHummer

New IT Limited

This is part of a bundled installer which provides applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application counter strike 1.6.exe, “Description is empty” by New IT Limited has been detected as adware by 24 anti-malware scanners. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. It is also typically executed from the user's temporary directory.
Publisher:
Elit -e - Company  (signed by New IT Limited)

Product:
CHummer

Description:
Description is empty

Version:
3, 5, 13, 0

MD5:
fed4bc1caa2cf0fb85462eb1359e8b91

SHA-1:
a2f4dbcd755ed4abc77c86cb763a679b8133f44c

SHA-256:
58e04859bca78f420b57db24a51c2ae5411535ec5e32a8dea937c5f8031538e4

Scanner detections:
24 / 68

Status:
Adware

Analysis date:
4/27/2024 12:23:38 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.Jaiks.244
827

AegisLab AV Signature
Troj.Dropper.W32.Agent
2.1.4+

Agnitum Outpost
PUA.4Shared
7.1.1

Avira AntiVirus
APPL/Downloader.Gen4
7.11.182.128

AVG
Generic
2015.0.3305

Bitdefender
Gen:Variant.Application.Bundler.Jaiks.244
1.0.20.1520

Clam AntiVirus
Win.Trojan.Agent-785988
0.98/21411

Dr.Web
Adware.Downware.2538
9.0.1.05190

ESET NOD32
Win32/4Shared.Y potentially unwanted application
7.0.302.0

F-Prot
W32/A-1ed09b26
v6.4.7.1.166

F-Secure
Gen:Variant.Application.Bundler
11.2014-31-10_6

G Data
Gen:Variant.Application.Bundler.Jaiks.244
14.10.24

IKARUS anti.virus
Trojan.Win32.Badur
t3scan.1.8.3.0

K7 AntiVirus
Unwanted-Program
13.185.13853

Malwarebytes
PUP.Optional.Elite
v2014.10.31.04

McAfee
PUP-FNX
5600.6961

MicroWorld eScan
Gen:Variant.Application.Bundler.Jaiks.244
15.0.0.912

NANO AntiVirus
Trojan.Win32.4Shared.dfhejw
0.28.6.62995

Reason Heuristics
PUP.NewITLimited.R
14.10.31.3

Sophos
4Share Downloader
4.98

SUPERAntiSpyware
PUP.4Shared/Variant
10267

Vba32 AntiVirus
Trojan.Badur
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
34392

Zillya! Antivirus
Backdoor.PePatch.Win32.44192
2.0.0.1973

File size:
529 KB (541,728 bytes)

Product version:
3, 5, 13, 0

Copyright:
2014

Trademarks:
No

Original file name:
DHelper

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\counter strike 1.6.exe

Digital Signature
Signed by:

Authority:
Starfield Technologies, Inc.

Valid from:
5/14/2014 3:00:04 PM

Valid to:
12/30/2016 10:33:53 AM

Subject:
CN=New IT Limited, O=New IT Limited, L=Nicosia, S=Nicosia, C=CY

Issuer:
CN=Starfield Secure Certificate Authority - G2, OU=http://certs.starfieldtech.com/repository/, O="Starfield Technologies, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
049768F7F19C91

File PE Metadata
Compilation timestamp:
9/5/2014 6:52:27 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:TJBDn7/o5rrBb4pLmadg5rixchdwr3DXBuP:TnnDmCmaQGxc7u3Dm

Entry address:
0x425D8

Entry point:
E8, 3A, BF, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 14, A1, 00, DE, 46, 00, 33, C5, 89, 45, FC, 53, 56, 33, DB, 57, 8B, F1, 39, 1D, BC, 0E, 47, 00, 75, 38, 53, 53, 33, FF, 47, 57, 68, D4, 1C, 46, 00, 68, 00, 01, 00, 00, 53, FF, 15, 94, C1, 45, 00, 85, C0, 74, 08, 89, 3D, BC, 0E, 47, 00, EB, 15, FF, 15, DC, C0, 45, 00, 83, F8, 78, 75, 0A, C7, 05, BC, 0E, 47, 00, 02, 00, 00, 00, 39, 5D, 14, 7E, 22, 8B, 4D, 14, 8B, 45, 10, 49, 38, 18, 74, 08, 40, 3B, CB, 75, F6, 83, C9, FF, 8B, 45, 14, 2B, C1...
 
[+]

Entropy:
6.5910

Code size:
361.5 KB (370,176 bytes)

Remove counter strike 1.6.exe - Powered by Reason Core Security