daemon tools lite 4.49.1.0356.exe

Maxiget Limited

This is a bundle installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application daemon tools lite 4.49.1.0356.exe by Maxiget Limited has been detected as adware by 17 anti-malware scanners. The program is a setup application that uses the New IT Desktop Setup installer.
Publisher:
Maxiget Limited  (signed and verified)

Version:
3, 3, 50, 0

MD5:
18c34eb63ec4ba62559ed8af73a6352b

SHA-1:
9f407aca0a6d2b4713ea64c71759394b61b5e170

SHA-256:
b03dd990e7954a1832f7f69958b6443c7994dbc615b604a61b585ad6f66d5170

Scanner detections:
17 / 68

Status:
Adware

Explanation:
This is a modified installer version of the software and bundles additional offers including adware.

Description:
This 'download manager' is also considered bundleware, a utility designed to download software (possibly legitimate or opensource) and bundle it with a number of optional offers including ad-supported utilities, toolbars, shopping comparison tools and browser extensions.

Analysis date:
4/18/2024 2:36:35 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.4Shared
7.1.1

Avira AntiVirus
APPL/Downloader.Gen
7.11.169.242

AVG
Generic
2015.0.3368

Comodo Security
Application.Win32.4Shared.K
19348

Dr.Web
Adware.Downware.1751
9.0.1.05190

ESET NOD32
Win32/4Shared.U potentially unwanted application
7.0.302.0

G Data
Win32.Application.4shared
14.8.24

IKARUS anti.virus
PUA.4Shared
t3scan.1.7.5.0

K7 AntiVirus
Unwanted-Program
13.183.13198

Malwarebytes
PUP.Optional.4Shared
v2014.08.29.11

McAfee
Obfosha
5600.7024

NANO AntiVirus
Riskware.Win32.Downware.ddvrsd
0.28.2.61861

Panda Antivirus
Trj/Genetic.gen
14.08.29.11

Reason Heuristics
PUP.MaxigetLimited.AA
14.8.29.7

Sophos
4Share Downloader
4.98

Vba32 AntiVirus
Downloader.GetFaster
3.12.26.3

VIPRE Antivirus
Threat.4150696
32210

File size:
415.6 KB (425,624 bytes)

Product version:
3, 3, 50, 0

Copyright:
2014

File type:
Executable application (Win32 EXE)

Bundler/Installer:
New IT Desktop Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\daemon tools lite 4.49.1.0356.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
6/3/2014 10:41:06 AM

Valid to:
8/15/2016 8:41:32 AM

Subject:
CN=Maxiget Limited, O=Maxiget Limited, L=Limassol, S=Cyprus, C=CY

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
043F9C868704FA

File PE Metadata
Compilation timestamp:
7/30/2014 12:20:06 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:irXm17vhZg5CFSSF1rU5Z1c0V5+EjGCj/d+GpYjJQNvGN9xbuSg:EW1Lhm/SF9U5gs5+yljl+Gyj+5GN6

Entry address:
0x2BC8B

Entry point:
E8, F6, A3, 00, 00, E9, 78, FE, FF, FF, CC, 8B, FF, 55, 8B, EC, 83, EC, 14, A1, B8, ED, 44, 00, 33, C5, 89, 45, FC, 53, 56, 33, DB, 57, 8B, F1, 39, 1D, 04, 06, 45, 00, 75, 38, 53, 53, 33, FF, 47, 57, 68, 94, 3F, 44, 00, 68, 00, 01, 00, 00, 53, FF, 15, 60, 11, 44, 00, 85, C0, 74, 08, 89, 3D, 04, 06, 45, 00, EB, 15, FF, 15, E4, 10, 44, 00, 83, F8, 78, 75, 0A, C7, 05, 04, 06, 45, 00, 02, 00, 00, 00, 39, 5D, 14, 7E, 22, 8B, 4D, 14, 8B, 45, 10, 49, 38, 18, 74, 08, 40, 3B, CB, 75, F6, 83, C9, FF, 8B, 45, 14, 2B...
 
[+]

Code size:
255 KB (261,120 bytes)

Remove daemon tools lite 4.49.1.0356.exe - Powered by Reason Core Security