mariana nolasco - te esperando (cover) - luan santana.mp3.exe

used of

Stanislav Kabin

The is the installer for the WebPick InstalleRex download manager which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed without consent. The application mariana nolasco - te esperando (cover) - luan santana.mp3.exe by Stanislav Kabin has been detected as adware by 29 anti-malware scanners.
Publisher:
of a  (signed by Stanislav Kabin)

Product:
used of

Version:
0.8.0.0

MD5:
2f19321d84c9cd01091e3a4d31b212c7

SHA-1:
21d512ae8aacacd69a4cf3be9ed44e07a6edc315

SHA-256:
27fb12a1dd90e1fccbd0aa90d4e9193411e77c29facbbe628cc62c1fcc7b1a7f

Scanner detections:
29 / 68

Status:
Adware

Analysis date:
4/25/2024 7:30:44 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Kazy.432869
5823004

AhnLab V3 Security
PUP/Win32.InstallRex
2014.11.22

Avira AntiVirus
Adware/MultiPlug.aoa
7.11.188.28

avast!
Win32:PUP-gen [PUP]
141119-1

AVG
Adware Generic_r.QP
2014.0.4189

Bitdefender
Gen:Variant.Adware.Kazy.432869
1.0.20.1630

Clam AntiVirus
Win.Adware.Dropper-8
0.98/21511

Comodo Security
Application.Win32.GreenApp.RR
20156

Dr.Web
Trojan.Siggen6.21336
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Adware.Kazy.432869
9.0.0.4570

ESET NOD32
Win32/AdWare.MultiPlug.AQ application
7.0.302.0

Fortinet FortiGate
Riskware/Generic.AC.445
11/22/2014

F-Prot
W32/A-853b85bc
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.Kazy.432869
11.2014-22-11_7

G Data
Gen:Variant.Adware.Kazy.432869
14.11.24

IKARUS anti.virus
AdWare.Graftor
t3scan.1.8.3.0

K7 AntiVirus
Adware
13.185.14098

Kaspersky
not-a-virus:AdWare.Win32.MultiPlug
15.0.0.463

Malwarebytes
PUP.Optional.InstallRex
v2014.11.22.12

McAfee
PUP-FMH
5600.6939

MicroWorld eScan
Gen:Variant.Adware.Kazy.432869
15.0.0.978

NANO AntiVirus
Trojan.Win32.Siggen6.dcscvl
0.28.6.63474

nProtect
Trojan-Clicker/W32.MultiPlug.808824
14.11.21.01

Panda Antivirus
Trj/Kazy.AS
14.11.22.12

Reason Heuristics
PUP.StanislavKabin.y
14.11.22.0

Sophos
MultiPlug
4.98

Vba32 AntiVirus
AdWare.MultiPlug
3.12.26.3

VIPRE Antivirus
Threat.4753027
35010

Zillya! Antivirus
Backdoor.PePatch.Win32.38896
2.0.0.1990

File size:
789.9 KB (808,824 bytes)

Product version:
0.8.0.0

Copyright:
Copyright (c) 2014

Original file name:
volume are

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\mariana nolasco - te esperando (cover) - luan santana.mp3.exe

Digital Signature
Signed by:

Authority:
Unizeto Technologies S.A.

Valid from:
6/23/2014 8:28:15 AM

Valid to:
6/23/2015 8:28:15 AM

Subject:
E=Stanislav.Kabin@hotmail.com, CN=Stanislav Kabin, O=Stanislav Kabin, C=RU

Issuer:
CN=Certum Code Signing CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
3469022839E88D596EA6FE14C990AF76

File PE Metadata
Compilation timestamp:
7/21/2014 8:07:58 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:sL4tl+lKe+JtVi2jHeO+YD7bFfBI5ofOpVnJDrEJ/ijsnp/Oee9Cou:sL4tl+lSJtPjHnj3bFZXfCDrGEsp/SI5

Entry address:
0x1764E

Entry point:
E8, 9F, 7D, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, B0, CD, 42, 00, E8, FC, 0D, 00, 00, E8, 2E, 04, 00, 00, 0F, B7, F0, 6A, 02, E8, 32, 7D, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, F0, 45, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Code size:
135.5 KB (138,752 bytes)