keywordbacon_code01.exe

keywordbaconSetup

enliple Ltd.

The application keywordbacon_code01.exe by enliple has been detected as a potentially unwanted program by 27 anti-malware scanners. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
enliple Ltd.  (signed and verified)

Product:
keywordbaconSetup

Version:
8.04

MD5:
07870bfe32de0ffda30cc678ddcb4ca1

SHA-1:
4ed4e912fcf6c473127f919ed2556b76de832bf0

SHA-256:
9ba84231ea066e8b87cc90a2b4d6c08efd0af4249da5fa0fa5aa7fa648bee3ac

Scanner detections:
27 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 5:03:39 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.133951
470

Agnitum Outpost
Trojan.Adkor
7.1.1

AhnLab V3 Security
PUP/Win32.Agent
2015.09.30

Arcabit
Trojan.Adware.Graftor.D20B3F
1.0.0.567

avast!
Win32:Malware-gen
2014.9-151022

Bitdefender
Gen:Variant.Adware.Graftor.133951
1.0.20.1475

Bkav FE
HW32.Packed
1.3.0.7237

Comodo Security
ApplicUnwnt
23327

Dr.Web
Trojan.Adkor.92
9.0.1.0295

Emsisoft Anti-Malware
Gen:Variant.Adware.Graftor.133951
8.15.10.22.02

ESET NOD32
Win32/Adware.Kraddare.LE (variant)
9.12332

F-Secure
Gen:Variant.Adware.Graftor
11.2015-22-10_5

G Data
Gen:Variant.Adware.Graftor.133951
15.10.25

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.9.5.0

K7 AntiVirus
Adware
13.210.17373

Kaspersky
not-a-virus:AdWare.Win32.Agent
14.0.0.1237

McAfee
Artemis!07870BFE32DE
5600.6604

MicroWorld eScan
Gen:Variant.Adware.Graftor.133951
16.0.0.885

Panda Antivirus
Trj/CI.A
15.10.22.02

Qihoo 360 Security
HEUR/QVM41.1.Malware.Gen
1.0.0.1015

Reason Heuristics
PUP.enliple.Installer (M)
15.10.22.14

Sophos
Generic PUA EO (PUA)
4.98

Trend Micro
TROJ_GEN.R00UC0ODK15
10.465.22

Vba32 AntiVirus
AdWare.Agent
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
44168

ViRobot
Adware.Agent.4468584[h]
2014.3.20.0

Zillya! Antivirus
Adware.Agent.Win32.63791
2.0.0.2421

File size:
4.3 MB (4,468,584 bytes)

Product version:
8.04

Original file name:
bacon_2.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\keywordbacon_code01.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
6/26/2013 9:00:00 AM

Valid to:
6/27/2015 8:59:59 AM

Subject:
CN=enliple Ltd., OU=Internet Dept, O=enliple Ltd., L=Guro-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
178A151BFE91D2CFD345640D3EE64736

File PE Metadata
Compilation timestamp:
2/6/2015 1:50:30 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:5JaD0r0a9hFBrI3WIrXNZX37hGSea8xTcI+oNA1TcZw2zJaD0r0c:5JaD0r0KhFBsWIrXn7huq16w2zJaD0rz

Entry address:
0x1878

Entry point:
68, 0C, BC, 42, 00, E8, EE, FF, FF, FF, 00, 00, 50, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, 69, 48, 16, 2F, FB, E5, EB, 4D, B8, 79, B2, 4F, 54, 59, 1E, 70, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 6B, 65, 79, 77, 6F, 72, 64, 62, 61, 63, 6F, 6E, 53, 65, 74, 75, 70, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 98, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 01, 00, 00, 00, 55, F9, B8, D6, 65, 9E, D9, 4C, BB, B5, 40, 4F, 1B, A7, 04, A1...
 
[+]

Entropy:
7.9474

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
208 KB (212,992 bytes)

Remove keywordbacon_code01.exe - Powered by Reason Core Security