memediasetupinst.exe

MeMedia Installer

MeMedia

The application memediasetupinst.exe, “MeMedia Installer Component” by MeMedia has been detected as a potentially unwanted program by 10 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. Additionally, the file is typically installed by a number of programs including Hunted By Ducks by FreeGamesWay.com and Moto Time by FreeGamesWay.com.
Publisher:
MeMedia  (signed and verified)

Product:
MeMedia Installer

Description:
MeMedia Installer Component

Version:
1, 0, 1, 9

MD5:
cc0c3134183328135c6db9b13547654f

SHA-1:
0fa2bcf66180a9287726d55d5dededc99baa148d

SHA-256:
d90733d7e4fff46b46532a24565c272c34e8efaa07c239764349fe411f169a9d

Scanner detections:
10 / 68

Status:
Potentially unwanted

Analysis date:
4/26/2024 1:52:46 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Adware.AdSpy
7.1.1

Avira AntiVirus
ADSPY/WhenUSearch.F
7.11.123.216

Comodo Security
UnclassifiedMalware
17568

Dr.Web
Adware.SaveNow.190
9.0.1.050

ESET NOD32
Win32/Adware.WhenU.SaveNow (variant)
8.9257

IKARUS anti.virus
not-a-virus:WebToolbar.Win32.WhenU
t3scan.2.2.29

Kaspersky
not-a-virus:WebToolbar.Win32.WhenU
14.0.0.4287

NANO AntiVirus
Trojan.Win32.MLW.ejmft
0.28.0.57029

Trend Micro House Call
GRAY_Gen.4X1844
7.2.50

Trend Micro
GRAY_Gen.4X1844
10.465.19

File size:
170.7 KB (174,808 bytes)

Product version:
1, 0, 1, 9

Copyright:
(c) 2006 MeMedia. All rights reserved.

Original file name:
MeMediaInstall.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\freegamesway.com\moto time\memediasetupinst.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
10/26/2006 2:00:00 AM

Valid to:
10/27/2007 1:59:59 AM

Subject:
CN=MeMedia, OU=Secure Application Development, O=MeMedia, L=New York City, S=New York, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
704B07D999F4373BF8B0ED4DB5F53BC8

File PE Metadata
Compilation timestamp:
12/11/2006 5:18:48 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
3072:lAHMbvgMZ7pSELcf2Atpvd1EssLEO3AIIAqwggP5RsSVEb63FB+nP:ysbvblpSIRCLVsAIKz05RsuEu1+

Entry address:
0xD8F6

Entry point:
6A, 60, 68, 60, 53, 41, 00, E8, 6E, 02, 00, 00, BF, 94, 00, 00, 00, 8B, C7, E8, 42, 31, 00, 00, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, 20, 50, 41, 00, 8B, 4E, 10, 89, 0D, E4, 90, 41, 00, 8B, 46, 04, A3, F0, 90, 41, 00, 8B, 56, 08, 89, 15, F4, 90, 41, 00, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, E8, 90, 41, 00, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, E8, 90, 41, 00, C1, E0, 08, 03, C2, A3, EC, 90, 41, 00, 33, F6, 56, 8B, 3D, 98, 51, 41, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03...
 
[+]

Code size:
80 KB (81,920 bytes)

The file memediasetupinst.exe has been discovered within the following programs.

Hunted By Ducks  by FreeGamesWay.com
www.FreeGamesWay.com
About 10% of users remove it
Moto Time  by FreeGamesWay.com
About 2% of users remove it
 
Powered by Should I Remove It?

Remove memediasetupinst.exe - Powered by Reason Core Security