pazera_free_mp4_to_avi_converter.exe

Pazera Free MP4 to AVI Converter

Pazera Jacek

The application pazera_free_mp4_to_avi_converter.exe, “Pazera Free MP4 to AVI Converter Setup ” by Pazera Jacek has been detected as a potentially unwanted program by 2 anti-malware scanners. This is a setup and installation application and has been known to bundle potentially unwanted software. The installer uses the InstallMonetizer platform which will donwload and install adware toolbars and other potentially unwanted software offers during setup. The file has been seen being downloaded from www.download.fi and multiple other hosts a known adware distribution point operated by AfterDawn.
Publisher:
Jacek Pazera   (signed by Pazera Jacek)

Product:
Pazera Free MP4 to AVI Converter

Description:
Pazera Free MP4 to AVI Converter Setup

MD5:
9053564922a0f7b91c6eb7d56676ded1

SHA-1:
d576e4d9c4d81e4d64b6c8c7df7c61deefbfd10d

SHA-256:
7dd9c51c989d33fbfe3bf76a274fa791bd5e761ec89a35452653d5cf5feb1a1c

Scanner detections:
2 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallMonetizer distribution platform to bundle adware.

Analysis date:
4/19/2024 10:09:30 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/InstallMonetizer.AF
8.10085

Reason Heuristics
PUP.InstallMonetizer.Bundle (M)
16.3.10.15

File size:
7.9 MB (8,303,760 bytes)

Product version:
1.9

Copyright:
Copyright © 2014 Jacek Pazera, http://pazera-software.com

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\pazera_free_mp4_to_avi_converter.exe

Digital Signature
Signed by:

Authority:
Unizeto Technologies S.A.

Valid from:
4/23/2014 12:28:31 PM

Valid to:
4/22/2017 12:28:31 PM

Subject:
E=jacekpazera@wp.pl, CN=Jacek Pazera, O=Pazera Jacek, C=PL

Issuer:
CN=Certum Code Signing CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
216724962F570D48391E5FEDA7B2A654

File PE Metadata
Compilation timestamp:
10/9/2012 2:18:22 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:MflIhoWmKDPfyl662tQ8+njokw7hlxY1KE/:MfyhTfyGtGskwJC

Entry address:
0xF3BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 64, ED, 40, 00, E8, E8, 71, FF, FF, 33, C0, 55, 68, 89, FA, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 45, FA, 40, 00, 64, FF, 32, 64, 89, 22, A1, 48, 3B, 41, 00, E8, BE, F7, FF, FF, E8, 65, F3, FF, FF, 8D, 55, EC, 33, C0, E8, F7, C3, FF, FF, 8B, 55, EC, B8, 4C, 66, 41, 00, E8, 6A, 58, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, 4C, 66, 41, 00, B2, 01...
 
[+]

Entropy:
7.9932

Developed / compiled with:
Microsoft Visual C++

Code size:
59 KB (60,416 bytes)

The file pazera_free_mp4_to_avi_converter.exe has been seen being distributed by the following 14 URLs.

http://www.download.fi/.../download.cfm?version_id=83469&software_id=2406&mirror_id=0&installer=0&perion=0&air_installer=0

http://fx150.x9top.info/2014/.../pazera-free-mp4-to-avi-converter-1-9.exe

https://dc707.4shared.com/download/.../Pazera_Free_MP4_to_AVI_Convert.exe

http://lb.cdn.m6web.fr/d/c/a/9c17de8ac3181f881223c354efca37bb/5707a5e3/soft/.../pazera-free-mp4-to-avi-converter_1-9_fr_196692.exe

Remove pazera_free_mp4_to_avi_converter.exe - Powered by Reason Core Security