idmbuildcrackandsetup__15022_i1600945436_il329.exe.rar

The file idmbuildcrackandsetup__15022_i1600945436_il329.exe.rar has been detected as a potentially unwanted program by 24 anti-malware scanners. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install. The file has been seen being downloaded from d.byteguardoptic.com.
MD5:
023718ff4a871f1c571c287d5cf13872

SHA-1:
c8aff0e92a495ce73870d1fb502eaaffa708ddfb

SHA-256:
bade96e1cc8caea9f4a13b3121de3c283908e9c787eb986f4a272fc6de1136fc

Scanner detections:
24 / 68

Status:
Potentially unwanted

Analysis date:
5/19/2024 7:30:15 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Amonetize
7.1.1

Avira AntiVirus
ADWARE/Amonetize.kpb
8.3.2.2

Arcabit
PUP.Adware.Amonetize.eas
1.0.0.425

AVG
BundleApp
2016.0.2996

Baidu Antivirus
PUA.Win32.Amonetize
4.0.3.1595

Bkav FE
W32.HfsAdware
1.3.0.6979

Dr.Web
infected with Trojan.Amonetize.4075
9.0.1.05190

ESET NOD32
Win32/Amonetize.HK potentially unwanted application
7.0.302.0

Fortinet FortiGate
Adware/Amonetize
9/5/2015

F-Prot
W32/Amonetize.X.gen
v6.4.7.1.166

IKARUS anti.virus
not-a-virus:AdWare.Amonetize
t3scan.1.9.5.0

K7 AntiVirus
Adware
13.2017122

Kaspersky
not-a-virus:AdWare.Win32.Amonetize
15.0.0.543

McAfee
Program.Artemis!A205AF928F9C
17.6.569.0

NANO AntiVirus
Trojan.Win32.Amonetize.dvrlle
0.30.24.3283

Panda Antivirus
Generic Suspicious
15.09.05.02

Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen
1.0.0.1015

Sophos
Generic PUA GH (PUA)
4.98

Total Defense
Heur/TrojanHorse.ZCIV!suspicious
37.1.62.1

Trend Micro House Call
TROJ_GE.4CAEB7A8
7.2.248

Trend Micro
TROJ_GE.4CAEB7A8
10.465.05

Vba32 AntiVirus
Signed-AdWare.Amonetize
3.12.26.4

VIPRE Antivirus
Amonetize
43456

Zillya! Antivirus
Adware.Amonetize.Win32.8105
2.0.0.2388

File size:
636.5 KB (651,809 bytes)

Common path:
C:\users\{user}\downloads\idmbuildcrackandsetup__15022_i1600945436_il329.exe.rar

The file idmbuildcrackandsetup__15022_i1600945436_il329.exe.rar has been seen being distributed by the following URL.