hitman absolution crack - fq.exe

SuperCharging

Maxiget Limited

This is a bundle installer which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application hitman absolution crack - fq.exe by Maxiget Limited has been detected as adware by 14 anti-malware scanners. The program is a setup application that uses the New IT Desktop Setup installer. The file has been seen being downloaded from ds123.maxiget.com.
Publisher:
SPC LLC  (signed by Maxiget Limited)

Product:
SuperCharging

Description:
DWD

Version:
3, 3, 17, 0

MD5:
89a7b776334c87d206a9f56ea7980b73

SHA-1:
d54cb686a28257c5c914ddd5efe61f83a4658b75

SHA-256:
3da6126e8008507a49c1e388bc0ac54d6ee86200901d1c05842bd611fc6bf4bd

Scanner detections:
14 / 68

Status:
Adware

Explanation:
This is a modified installer version of the software and bundles additional offers including adware.

Description:
This 'download manager' is also considered bundleware, a utility designed to download software (possibly legitimate or opensource) and bundle it with a number of optional offers including ad-supported utilities, toolbars, shopping comparison tools and browser extensions.

Analysis date:
4/23/2024 2:47:00 PM UTC  (today)

Scan engine
Detection
Engine version

AegisLab AV Signature
Troj.W32.Badur
2.1.4+

Agnitum Outpost
PUA.4Shared
7.1.1

Avira AntiVirus
APPL/Downloader.Gen
7.11.176.116

AVG
Generic
2015.0.3472

ESET NOD32
Win32/4Shared (variant)
8.9811

F-Prot
W32/A-1f3d25ca
v6.4.7.1.166

K7 AntiVirus
Unwanted-Program
13.183.13550

McAfee
Obfosha
5600.6914

NANO AntiVirus
Trojan.Win32.MLW.dcdomp
0.28.2.62440

Reason Heuristics
PUP.MaxigetLimited.CC
14.8.7.21

Sophos
4Share Downloader
4.98

Vba32 AntiVirus
Downloader.GetFaster
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
29286

Zillya! Antivirus
Backdoor.PePatch.Win32.40003
2.0.0.1941

File size:
448 KB (458,752 bytes)

Product version:
3, 3, 17, 0

Copyright:
2013

Trademarks:
-

File type:
Executable application (Win32 EXE)

Bundler/Installer:
New IT Desktop Setup

Language:
Turkish (Turkey)

Common path:
C:\users\{user}\downloads\hitman absolution crack - fq.exe

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
8/15/2013 9:41:32 AM

Valid to:
8/15/2016 9:41:32 AM

Subject:
CN=Maxiget Limited, O=Maxiget Limited, L=Limassol, S=Cyprus, C=CY

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
045BA815265145

File PE Metadata
Compilation timestamp:
4/17/2014 7:26:16 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:0neADuJuYPG6g3uFLnd2wSFfJUQwhinV26tKkJZXnH3cw4b7:0ndDahG6g3I2wWfqrhiV2+LXswk7

Entry address:
0x29944

Entry point:
E8, 54, 98, 00, 00, E9, 78, FE, FF, FF, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B, 4C, 24, 04, 2B, C1, C3, 8D, 41, FE, 8B, 4C, 24, 04...
 
[+]

Code size:
316 KB (323,584 bytes)

The file hitman absolution crack - fq.exe has been seen being distributed by the following URL.

Remove hitman absolution crack - fq.exe - Powered by Reason Core Security