mediaget.exe

MediaGet 2

Media Get LLC

The application mediaget.exe, “MediaGet torrent client” by Media Get has been detected as a potentially unwanted program by 9 anti-malware scanners.
Remove mediaget.exe - Powered by Reason Core Security
Publisher:
MediaGet LLC  (signed by Media Get LLC)

Product:
MediaGet 2

Description:
MediaGet torrent client

Version:
2.1.1843.0

MD5:
18ee1eb398ba4bb2aed3e8e8c8ade24e

SHA-1:
b2a63bd395f690215f73c4c1759447d93f0f228b

SHA-256:
ba9c261832e8489245daf90149c4c57dd9c7926c497887ad2d7595d935c3bbbd

Scanner detections:
9 / 68

Status:
Potentially unwanted

Analysis date:
12/11/2016 11:15:15 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
Adware/MediaG.B.1.B
7.11.102.78

Antiy Labs AVL
Downloader/Win32.MediaGet.gen
2.0.3.7

avast!
Win32:MediaGet-L [PUP]
2014.9-140610

CMC Antivirus
Downloader.Win32.MediaGet!O
1.1.0.977

Comodo Security
ApplicUnsaf.Win32.Downloader.MediaGet.A
16927

G Data
Win32.Adware.MediaGet
14.6.24

Reason Heuristics
PUP.Optional.MediaGet.I
14.6.10.13

Rising Antivirus
Trojan.Win32.Generic.12DDF2E3
23.00.65.14608

Trend Micro House Call
TROJ_GEN.F47V0816
7.2.161

Remove mediaget.exe - Powered by Reason Core Security
File size:
9.1 MB (9,567,464 bytes)

Product version:
2.1.1843.0

Copyright:
Copyright © 2011 MediaGet LLC

Original file name:
mediaget

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\mediaget2\mediaget.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
3/9/2011 4:00:00 AM

Valid to:
3/9/2014 3:59:59 AM

Subject:
CN=Media Get LLC, O=Media Get LLC, STREET=Sadovaya 53, L=Saint-Petersburg, S=Russia, PostalCode=190344, C=RU

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
71D26D579AEE6A768F27CF3B6D4E9A91

File PE Metadata
Compilation timestamp:
10/2/2012 5:26:27 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:vAisUQJZtFkC0Qx+C4UudLaprVxLpFcqnMNfmC2ChGNIgV0W6zjQB+6:vA9bt6C0QIC40hcnfgCBgAKX

Entry address:
0x3993E0

Entry point:
E8, 89, 06, 00, 00, E9, D7, FC, FF, FF, FF, 25, 24, 54, 83, 00, FF, 25, BC, 55, 83, 00, FF, 25, 54, 55, 83, 00, FF, 25, 50, 55, 83, 00, 8B, FF, 55, 8B, EC, FF, 75, 08, E8, 81, F5, FF, FF, 59, 5D, C3, 8B, FF, 55, 8B, EC, 5D, E9, 1D, 00, 00, 00, CC, FF, 25, 4C, 55, 83, 00, FF, 25, 48, 55, 83, 00, 8B, FF, 55, 8B, EC, FF, 75, 08, E8, 1B, F4, FF, FF, 59, 5D, C3, 6A, 08, B8, 0E, C7, 81, 00, E8, F1, 06, 00, 00, FF, 75, 08, 83, 65, FC, 00, E8, 2A, F4, FF, FF, 59, 89, 45, EC, 8B, 45, EC, E8, 7E, 07, 00, 00, C3, 83...
 
[+]

Code size:
4.2 MB (4,404,224 bytes)

Remove mediaget.exe - Powered by Reason Core Security