freesofttoday.exe

fst_it_26

TUTO4PC COM INTERNATIONAL SL

This is the Eorezo installer which may include software offers for unwanted programs including toolbars. The application freesofttoday.exe, “fst_it_26 Setup ” by TUTO4PC COM INTERNATIONAL SL has been detected as adware by 25 anti-malware scanners. The program is a setup application that uses the Inno Setup installer. It is also typically executed from the user's temporary directory.
Publisher:
FREESOFTTODAY   (signed by TUTO4PC COM INTERNATIONAL SL)

Product:
fst_it_26

Description:
fst_it_26 Setup

MD5:
04aeb647d6e7455399af15985a22bd73

SHA-1:
953132a6a9d2042fa754f16c77a34ff0d24c8747

SHA-256:
54835d0e01a029def9bd7323570ec095f817f2651ec0a2cb55866bebe93b327f

Scanner detections:
25 / 68

Status:
Adware

Analysis date:
4/23/2024 8:13:24 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Eorezo.AX
5827180

Agnitum Outpost
Adware.EoRezo
7.1.1

AhnLab V3 Security
Win-PUP/EoRezo
2014.11.23

Avira AntiVirus
Adware/EoRezo.bonc
7.11.188.58

avast!
Win32:Eorezo-CD [PUP]
2014.9-141122

AVG
Generic5
2015.0.3282

Bitdefender
Adware.Eorezo.AX
1.0.20.1630

Dr.Web
Adware.Downware.1597
9.0.1.05190

Emsisoft Anti-Malware
Adware.Eorezo.AX
9.0.0.4570

ESET NOD32
multiple threats
7.0.302.0

Fortinet FortiGate
Riskware/EoRezo
11/22/2014

F-Secure
Adware.Eorezo.AX
11.2014-22-11_7

G Data
Adware.Eorezo.AX
14.11.24

K7 AntiVirus
Adware
13.185.14098

Kaspersky
not-a-virus:AdWare.NSIS.Agent
15.0.0.543

Malwarebytes
Adware.EoRezo
v2014.11.22.07

McAfee
Adware-Eorezo
5600.6938

Microsoft Security Essentials
Threat.Undefined
1.189.509.0

MicroWorld eScan
Adware.Eorezo.AX
15.0.0.978

NANO AntiVirus
Trojan.Win32.EoRezo.cumlzb
0.28.6.63474

nProtect
Adware.Eorezo.AX
14.11.21.01

Reason Heuristics
PUP.Installer.TUTO4PCCOMINTERNATIONALSL.N
14.11.22.19

Sophos
Generic PUA GJ
4.98

Vba32 AntiVirus
AdWare.Agent
3.12.26.3

VIPRE Antivirus
Threat.4895339
35010

File size:
3.1 MB (3,256,864 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\software\freesofttoday.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/26/2013 2:19:10 PM

Valid to:
6/27/2014 2:19:10 PM

Subject:
E=contact@tutoriales100.com, CN=TUTO4PC COM INTERNATIONAL SL, O=TUTO4PC COM INTERNATIONAL SL, L=BARCELONA, S=CATALUNYA, C=ES

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121E6FBF47B55F81EDBA70D3D2CA03E568F

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:at9wgJPrlKGIb+j03BaX6nKAYoyCg/LIaUy3ak82d:hgJTlKmc6CGLhUxy3as

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

Remove freesofttoday.exe - Powered by Reason Core Security