moviemode64.exe

The MovieMode adware browser extension/toolbar for IE, Chrome and Firefox will inject ads in the browser (banner and text-links) using the OpenApp Media platform. The application moviemode64.exe has been detected as a potentially unwanted program by 6 anti-malware scanners.
MD5:
7119614518591ee846bc7acd06fe4e7a

SHA-1:
69f3763924d503fc192819444884889e45cdc1df

SHA-256:
ff19b747d142714384e569735a20cfc0cf5536555c33e8da775f3e0d16d92402

Scanner detections:
6 / 68

Status:
Potentially unwanted

Analysis date:
4/20/2024 3:16:10 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Trash.Gen
7.11.30.172

AVG
MalSign.GenTec
2015.0.3367

ESET NOD32
MSIL/Adware.PullUpdate (variant)
8.9698

herdProtect (fuzzy)
2014.8.29.19

Malwarebytes
Adware.MovieMode
v2014.08.29.03

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
10512

File size:
149.1 KB (152,720 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\ProgramData\moviemode\up\2.6.78\moviemode64.exe

File PE Metadata
Compilation timestamp:
4/18/2014 11:48:43 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:ivmO0denAi7Hkog6W955sE6reTGLZfVE+ebJ2LOIGKGzW:0mcHtQ955sE6r26VzekCIGKGC

Entry address:
0x98FE

Entry point:
48, A1, 00, 20, 00, 40, 00, 00, 00, 00, FF, E0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.5434

Code size:
30.5 KB (31,232 bytes)

Remove moviemode64.exe - Powered by Reason Core Security