movie2kdownloader.exe

PutLockerDownloader

Cool Mirage ltd.

This is part of a CoolMirage installatation, a potentially unwanted program (PUP) that display ads on the computer. The application movie2kdownloader.exe by Cool Mirage ltd has been detected as adware by 3 anti-malware scanners. This is a setup program which is used to install the application. This file is typically installed with the program Movie2KDownloader by Movie2KDownloader.com which is a potentially unwanted software program. The setup installer will bundle multiple adware offers during download and setup (based on the user's geographical location) including toolbars, extensions and coupon utilities.
Publisher:
Cool Mirage ltd.  (signed and verified)

Product:
PutLockerDownloader

Version:
1.0.0.1

MD5:
c925c5b7e2b0b9a9d5d67082323fee61

SHA-1:
61c14b94543768499a0682e7f73263b87430468f

SHA-256:
7b5feb696317647ef9e6f3c3df7a273418f08f3e6020d82872d92b09d69e3574

Scanner detections:
3 / 68

Status:
Adware

Explanation:
Bundles a number of adware programs in the installer.

Analysis date:
7/4/2026 2:36:55 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Downloader-TPG [PUP]
2014.9-131224

Reason Heuristics
PUP.CoolMirageltd.R
14.8.7.18

VIPRE Antivirus
CoolMirage Ltd
24060

File size:
1.2 MB (1,262,192 bytes)

Product version:
1.0.0.1

Copyright:
Copyright © 2012

Original file name:
PutLockerDownloader.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\movie2kdownloader.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/14/2012 1:00:00 AM

Valid to:
11/15/2014 12:59:59 AM

Subject:
CN=Cool Mirage ltd., O=Cool Mirage ltd., STREET=ogarit 39, L=tel aviv, S=tel aviv, PostalCode=69016, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00FC28659CC8073606EF4D09A1994B1AD0

File PE Metadata
Compilation timestamp:
12/4/2012 8:14:03 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:+g1RUeyhxdUNXgBN/soCIyDyPgdz3AJUg4ZdZp37kv5/bH6RGULv0Yj6W8A:+IMUNQXq5DlJZdZt7S5G5LcAv7

Entry address:
0x12F90E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9204

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
1.2 MB (1,235,456 bytes)

The file movie2kdownloader.exe has been discovered within the following program.

Movie2KDownloader  by Movie2KDownloader.com
Publisher's description - “Movie2k Downloader is a FREE download manager that can increase the speed and stability of your downloads by up to 5 times. Resume and schedule downloads and comprehensive error recovery. It is a powerful, yet easy-to-use download manager you can rely on.”
movie2kdownloader.com
69% remove it
 
Powered by Should I Remove It?

The file movie2kdownloader.exe has been seen being distributed by the following URL.

Remove movie2kdownloader.exe - Powered by Reason Core Security