MediaDownloader.exe

MediaDownloader v.2

SOFTWARE AGILITY LIMITED

The application MediaDownloader.exe has been detected as a potentially unwanted program by 12 anti-malware scanners. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install.
Remove MediaDownloader.exe - Powered by Reason Core Security
Publisher:
SOFTWARE AGILITY LIMITED

Product:
MediaDownloader v.2

Version:
2.0.5253.27706

MD5:
ce3a3b87175c4229f290300f37826bc6

SHA-1:
e1d85033a51fa182dbf1007ecfa820e759df9ce1

SHA-256:
f263a63409d29be4a1c824da20d7c208cde81a38e024d0830595598466b55a48

Scanner detections:
12 / 68

Status:
Potentially unwanted

Analysis date:
12/10/2016 11:53:23 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Amonetize
7.1.1

Avira AntiVirus
Adware/Amonetize.rv.1
7.11.151.100

avast!
Win32:Amonetize-BH [PUP]
2014.9-140610

Baidu Antivirus
Adware.Win32.Amonetize
4.0.3.14610

Fortinet FortiGate
Adware/Amonetize
6/10/2014

Kaspersky
not-a-virus:AdWare.Win32.Amonetize
14.0.0.3733

McAfee
Artemis!CE3A3B87175C
5600.7104

McAfee Web Gateway
Artemis!CE3A3B87175C
7.7104

Qihoo 360 Security
Win32/Virus.Adware.06a
1.0.0.1015

Trend Micro House Call
TROJ_GEN.R0C1H07EL14
7.2.161

Vba32 AntiVirus
AdWare.Amonetize
3.12.26.0

VIPRE Antivirus
SkyTouch
29586

Remove MediaDownloader.exe - Powered by Reason Core Security
File size:
3.7 MB (3,850,752 bytes)

Product version:
2.0.5253.27706

Copyright:
Copyright © 2014

Trademarks:
SOFTWARE AGILITY LIMITED

Original file name:
MediaDownloader.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\mediadownloader.exe

File PE Metadata
Compilation timestamp:
5/20/2014 1:23:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:bGno8vE9IoA/z3B7cVbSCy9McKodDGkMpk3zlBB8GWnuNFl/Pv9P9d:qo8r/zxchM9zpdDG1p8j6hnU1P

Entry address:
0x3A9A4E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.0196

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
3.7 MB (3,832,832 bytes)

Remove MediaDownloader.exe - Powered by Reason Core Security