jenny+owen+youngs+-+last+person+(t.+vtornikam) - [mp3juices.com].exe

by support requirements

Itzhak Shternberg

The is the installer for the WebPick InstalleRex download manager which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed without consent. The application jenny+owen+youngs+-+last+person+(t.+vtornikam) - [mp3juices.com].exe by Itzhak Shternberg has been detected as adware by 27 anti-malware scanners.
Publisher:
programs  (signed by Itzhak Shternberg)

Product:
by support requirements

Version:
5.3.0.0

MD5:
250463cca70c413aea646969768fd15e

SHA-1:
30cdeea3af0c35b2fd96901885dcfaaf1a526ab5

SHA-256:
2366ee2098e981a9b4aa94f24c2fc974437b9b7748380f86accf518c76630e82

Scanner detections:
27 / 68

Status:
Adware

Analysis date:
4/19/2024 7:17:45 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Dropper.103
799

Agnitum Outpost
PUA.MultiPlug
7.1.1

Avira AntiVirus
ADWARE/Adware.Gen
7.11.189.64

avast!
Win32:PUP-gen [PUP]
141119-1

AVG
Adware Generic5.BABU
2014.0.4189

Bitdefender
Gen:Variant.Adware.Dropper.103
1.0.20.1660

Clam AntiVirus
Win.Adware.Graftor-176
0.98/21511

Comodo Security
Application.Win32.Multiplug.GETF
20215

Dr.Web
Adware.Downware.5841
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Adware.Dropper.103
9.0.0.4570

ESET NOD32
Win32/AdWare.MultiPlug.AP application
7.0.302.0

Fortinet FortiGate
Riskware/Generic.AC.106330
11/28/2014

F-Prot
W32/S-819f1296
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.Dropper.103
11.2014-28-11_6

G Data
Gen:Variant.Adware.Dropper.103
14.11.24

K7 AntiVirus
Adware
13.186.14161

Kaspersky
not-a-virus:HEUR:WebToolbar.Win32.Cossder
14.0.0.2880

Malwarebytes
PUP.Optional.Preload
v2014.11.28.12

McAfee
PUP-FMU
5600.6933

MicroWorld eScan
Gen:Variant.Adware.Dropper.103
15.0.0.996

NANO AntiVirus
Riskware.Win32.MultiPlug.dceqae
0.28.6.63726

Panda Antivirus
PUP/TSUploader
14.11.28.12

Reason Heuristics
PUP.ItzhakShternberg.
14.11.28.0

Sophos
MultiPlug
4.98

Vba32 AntiVirus
AdWare.MultiPlug
3.12.26.3

VIPRE Antivirus
Threat.4753027
35088

Zillya! Antivirus
Backdoor.PePatch.Win32.38526
2.0.0.1995

File size:
794.2 KB (813,288 bytes)

Product version:
5.3.0.0

Copyright:
Copyright (c) 2014

Original file name:
such either to

File type:
Executable application (Win32 EXE)

Language:
English (United Kingdom)

Common path:
C:\users\{user}\downloads\jenny+owen+youngs+-+last+person+(t.+vtornikam) - [mp3juices.com].exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/17/2013 8:00:00 PM

Valid to:
7/18/2014 7:59:59 PM

Subject:
CN=Itzhak Shternberg, O=Itzhak Shternberg, STREET=Belkind 2, L=Tel Aviv, S=Tel Aviv, PostalCode=62154, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
54990006BE4A0F29ECCD7EE2F93DC0FC

File PE Metadata
Compilation timestamp:
7/12/2014 2:02:27 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:w1Rt36NQWfsCZ6Hiqz7RUDTG4zvIXqPxsEvYkouLt09NXGPsNcny:wR6NQesCZ6CgWfG4zwEvYkouyXGEOy

Entry address:
0x15D3E

Entry point:
E8, 6B, 75, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 00, BE, 42, 00, E8, BC, 26, 00, 00, E8, BC, 0E, 00, 00, 0F, B7, F0, 6A, 02, E8, FE, 74, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, 20, 3A, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Entropy:
7.6895

Code size:
139 KB (142,336 bytes)