feven 2.2-buttonutil.exe

Feven 2.2

Feven

The application feven 2.2-buttonutil.exe has been detected as adware by 26 anti-malware scanners. It is built using the Crossrider cross-browser extension platform. While the file utilizes the Crossrider framework and delivery services, it is not owned by Crossrider.
Publisher:
Feven

Product:
Feven 2.2

Description:
Feven 2.2 exe

Version:
1000.1000.1000.1000

MD5:
613fb2921f3df1808e8cfd96a4cc35c4

SHA-1:
8149fc65c1ae3607261025d60c626b1a5dcc0f97

SHA-256:
8c6ef9412b4dec98c4e88c74771fd147e80abc1bcb573f480a55dfc01be7ab0d

Scanner detections:
26 / 68

Status:
Adware

Explanation:
Part of the Crossrider toolbar platform. It will download and install new code and Javascript updates for the extension.

Note:
Crossrider is the owner of a platform that enables the creation of cross-browser extensions by developers but is not the owner of this detected application.

Analysis date:
4/27/2024 2:40:46 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.11319501
889

Agnitum Outpost
PUA.Toolbar.CrossRider
7.1.1

Avira AntiVirus
ADWARE/CrossRider.Gen2
7.11.168.26

AVG
Generic5
2015.0.3367

Baidu Antivirus
Adware.Win32.CrossRider
4.0.3.14829

Bitdefender
Trojan.Generic.11319501
1.0.20.1205

Comodo Security
ApplicUnwnt
19255

Dr.Web
Adware.Siggen.31029
9.0.1.0241

Emsisoft Anti-Malware
Trojan.Generic.11319501
8.14.08.29.02

ESET NOD32
Win32/Toolbar.CrossRider.AA (variant)
8.10284

Fortinet FortiGate
Riskware/Toolbar_CrossRider
8/29/2014

F-Secure
Trojan.Generic.11319501
11.2014-29-08_6

G Data
Trojan.Generic.11319501
14.8.24

K7 AntiVirus
Trojan
13.183.13098

Malwarebytes
PUP.Optional.Feven.A
v2014.08.29.02

McAfee
Adware-AddLyrics
5600.7023

Microsoft Security Essentials
Adware:Win32/Feven
1.10903

MicroWorld eScan
Trojan.Generic.11319501
15.0.0.723

NANO AntiVirus
Riskware.Win32.Siggen.cykdnx
0.28.2.61721

nProtect
Trojan.Generic.11319501
14.08.19.01

Panda Antivirus
Trj/CI.A
14.08.29.02

Reason Heuristics
PUP.Crossrider.Feven.T
14.8.29.14

Sophos
AppRider
4.98

Trend Micro House Call
TROJ_GEN.R0CBC0TCF14
7.2.241

Trend Micro
TROJ_GEN.R0CBC0TCF14
10.465.29

VIPRE Antivirus
Crossrider
32376

File size:
323.5 KB (331,264 bytes)

Product version:
1000.1000.1000.1000

Copyright:
Copyright 2011

Original file name:
Feven 2.2.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\feven 2.2\feven 2.2-buttonutil.exe

File PE Metadata
Compilation timestamp:
12/4/2013 3:23:15 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
6144:sFH61KluTg96U2GnzRtynSheD1sxOZ9EDjCe3r5UTVTBV0ObDE:2H61KluTg92GnzRtynSheIOZ9lLTVTzZ

Entry address:
0x284D5

Entry point:
E8, CC, 93, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 78, CE, 44, 00, E8, 95, 28, 00, 00, E8, FB, 16, 00, 00, 0F, B7, F0, 6A, 02, E8, 5F, 93, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, 59, 2B, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Entropy:
6.4150

Code size:
236.5 KB (242,176 bytes)

Remove feven 2.2-buttonutil.exe - Powered by Reason Core Security