player-chrome.exe

The application player-chrome.exe has been detected as a potentially unwanted program by 4 anti-malware scanners. The program is a setup application that uses the Adknowledge Fusion installer, however the file is not signed with an authenticode signature from a trusted source. The installer is marketed through download protals and search ads as Google's Chrome web browser but will also install additional software offers which include adware, PUPs and browser toolbars.
MD5:
903ad2cbbc7af38f8f24bea5ba803851

SHA-1:
657bd7f7fccf996f9eedaf78df66c079a91d7108

SHA-256:
da04d9aa39f2822438b662f831e03a84f8da71affeee97f8fb537d445196b97c

Scanner detections:
4 / 68

Status:
Potentially unwanted

Description:
This is an installer which may bundle legitimate applications with offers for additional 3rd-party applications that may be unwanted by the user. While the installer contains an 'opt-out' feature this is not set be defult and is usually overlooked.

Analysis date:
4/26/2024 11:15:21 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Trash.Gen
7.11.30.172

avast!
Win32:IBryte-DY [PUP]
141023-1

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
10279

File size:
315.9 KB (323,448 bytes)

File type:
Executable application (Win32 EXE)

Bundler/Installer:
Adknowledge Fusion

Common path:
C:\users\{user}\downloads\player-chrome.exe

File PE Metadata
Compilation timestamp:
7/18/2014 4:28:32 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:UriNkJdFZiYiBZNENLrgo2SLhp+bTVU4al63ophP:UXL6NENLrtvh2gphP

Entry address:
0x181F5

Entry point:
E8, C2, 8D, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 8B, 45, 08, 56, 57, 6A, 08, 59, BE, 24, D4, 43, 00, 8D, 7D, E0, F3, A5, 89, 45, F8, 8B, 45, 0C, 5F, 89, 45, FC, 5E, 85, C0, 74, 0C, F6, 00, 08, 74, 07, C7, 45, F4, 00, 40, 99, 01, 8D, 45, F4, 50, FF, 75, F0, FF, 75, E4, FF, 75, E0, FF, 15, 84, D0, 43, 00, C9, C2, 08, 00, 8B, FF, 55, 8B, EC, 51, 53, 8B, 45, 0C, 83, C0, 0C, 89, 45, FC, 64, 8B, 1D, 00, 00, 00, 00, 8B, 03, 64, A3, 00, 00, 00, 00, 8B, 45, 08, 8B, 5D, 0C, 8B, 6D, FC, 8B, 63...
 
[+]

Entropy:
6.3887

Code size:
238 KB (243,712 bytes)

Remove player-chrome.exe - Powered by Reason Core Security