k2blockandsurfp72_iobitdel.exe

The application k2blockandsurfp72_iobitdel.exe has been detected as adware by 13 anti-malware scanners. This file is typically installed with the program BlockAndSurf by Revizer Technologies which is a potentially unwanted software program. This is part of the Revizer line of web browser extensions that inject 3rd-party advertisements in the user's web browser as well as setup a proxy server for the browser in order to track behaviors and display context based-ads from various partners (mostly adware).
MD5:
30bc6e25d5e0b24821c9d72ed4822418

SHA-1:
ed74000921e9d87558c08b7add1d7c816127b33f

SHA-256:
622d3e64d7a52215e08fb5914570f52cadbe4f162bd7eb6dfcb20c04f9fdef4e

Scanner detections:
13 / 68

Status:
Adware

Analysis date:
4/25/2024 8:59:51 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Graftor.179236
5651644

Avira AntiVirus
TR/Crypt.EPACK.Gen2
3.6.1.96

avast!
Win32:Adware-gen [Adw]
150319-1

AVG
AddLyrics_r
2016.0.3135

Baidu Antivirus
Adware.Win32.AddLyrics
4.0.3.15419

Bitdefender
Gen:Variant.Graftor.179236
1.0.20.545

Emsisoft Anti-Malware
Gen:Variant.Graftor.179236
9.0.0.4799

ESET NOD32
Win32/Adware.AddLyrics.EE application
7.0.302.0

F-Secure
Gen:Variant.Graftor.179236
5.13.68

G Data
Gen:Variant.Graftor.179236
15.4.25

MicroWorld eScan
Gen:Variant.Graftor.179236
16.0.0.327

Reason Heuristics
Adware.Revizer
15.4.19.3

Rising Antivirus
PE:Malware.Obscure/Heur!1.9E03
23.00.65.15417

File size:
589 KB (603,136 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\version05blockandsurf\k2blockandsurfp72_iobitdel.exe

File PE Metadata
Compilation timestamp:
4/15/2015 11:12:23 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:jHa5zigsE/TV3jCEn8rbStWUbmjXEf5G0+fB:W5zZTV3j98HSzbrU0+J

Entry address:
0x3D2C2

Entry point:
E8, 16, BE, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 69, 00, 00, 00, C7, 06, 34, B2, 45, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 56, 8D, 45, 08, 50, 8B, F1, E8, 0D, 00, 00, 00, C7, 06, 34, B2, 45, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 8B, 45, 08, 56, 8B, F1, 83, 66, 04, 00, C7, 06, 14, B2, 45, 00, C6, 46, 08, 00, FF, 30, E8, D8, 00, 00, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 8B, 45, 08, C7, 01, 14, B2, 45, 00, 8B, 00, 89, 41, 04, C6, 41, 08, 00, 8B, C1, 5D, C2, 08...
 
[+]

Entropy:
6.2156

Code size:
346.5 KB (354,816 bytes)

The file k2blockandsurfp72_iobitdel.exe has been discovered within the following program.

BlockAndSurf  by Revizer Technologies
BlockAndSurf is an adware browser extension that will display banner and text-context link ads aimed to promote the installation of additional questionable content including web browser toolbars, optimization utilities and other products.
www.revizer.com
82% remove it
 
Powered by Should I Remove It?

Remove k2blockandsurfp72_iobitdel.exe - Powered by Reason Core Security