fl_1.0.2.9_beta_jenkey1002.rar.exe

a database the

Itzhak Shternberg

The is the installer for the WebPick InstalleRex download manager which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed without consent. The application fl_1.0.2.9_beta_jenkey1002.rar.exe by Itzhak Shternberg has been detected as adware by 24 anti-malware scanners. It uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions.
Publisher:
sometimes  (signed by Itzhak Shternberg)

Product:
a database the

Version:
2.1.0.0

MD5:
046891a1ec5a9d1d1f7bc7c6b7f01acd

SHA-1:
942e9f872b12082ae1e925f31a9c8a3bb468f342

SHA-256:
207a57a04032dc02b8ed8e8ea28bca6ceda800342cd6d027bf9854236d96ac35

Scanner detections:
24 / 68

Status:
Adware

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Analysis date:
4/27/2024 1:19:59 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Dropper.103
927

Agnitum Outpost
PUA.MultiPlug
7.1.1

AhnLab V3 Security
PUP/Win32.InstallRex
2014.07.23

Avira AntiVirus
ADWARE/Adware.Gen7
7.11.163.102

avast!
Win32:InstalleRex-CG [PUP]
140617-1

AVG
Adware Generic5.AZJX
2014.0.3986

Bitdefender
Gen:Variant.Adware.Dropper.103
1.0.20.1015

Clam AntiVirus
Win.Adware.Graftor-166
0.98/19185

Comodo Security
Application.Win32.Multiplug.GETF
18936

Dr.Web
Adware.Downware.5781
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Adware.Dropper.103
8.14.07.22.02

ESET NOD32
Win32/AdWare.MultiPlug.AJ application
7.0.302.0

F-Secure
Gen:Variant.Adware.Dropper.103
11.2014-22-07_3

G Data
Gen:Variant.Adware.Dropper.103
14.7.24

IKARUS anti.virus
AdWare.SaveNet
t3scan.1.6.1.0

K7 AntiVirus
Adware
13.181.12806

Malwarebytes
v2014.07.22.02

McAfee
PUP-FJC
5600.7061

MicroWorld eScan
Gen:Variant.Adware.Dropper.103
15.0.0.609

NANO AntiVirus
Riskware.Win32.MultiPlug.dcbojo
0.28.2.60990

Panda Antivirus
PUP/TSUploader
14.07.22.02

Reason Heuristics
PUP.ItzhakShternberg.AA
14.7.22.13

Sophos
MultiPlug
4.98

VIPRE Antivirus
Threat.4753027
31208

File size:
789.7 KB (808,680 bytes)

Product version:
2.1.0.0

Copyright:
Copyright (c) 2014

Original file name:
the a any

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\users\{user}\downloads\fl_1.0.2.9_beta_jenkey1002.rar.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/18/2013 1:00:00 AM

Valid to:
7/19/2014 12:59:59 AM

Subject:
CN=Itzhak Shternberg, O=Itzhak Shternberg, STREET=Belkind 2, L=Tel Aviv, S=Tel Aviv, PostalCode=62154, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
54990006BE4A0F29ECCD7EE2F93DC0FC

File PE Metadata
Compilation timestamp:
7/6/2014 11:16:49 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:l+uYlBMmmw3cFC5JLFNTBeP5D0U02Dg/Ph+feI8M:wMmmw3j5BQP5D0U0gg/ZUeIR

Entry address:
0x14FEE

Entry point:
E8, 6B, 75, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 70, AD, 42, 00, E8, 3C, 27, 00, 00, E8, BC, 0E, 00, 00, 0F, B7, F0, 6A, 02, E8, FE, 74, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, A0, 3A, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Code size:
136 KB (139,264 bytes)

Remove fl_1.0.2.9_beta_jenkey1002.rar.exe - Powered by Reason Core Security