radiorage.f2ad7f46-83a8-4d63-bd8b-45e1066b82cf.exe

RadioRage

Mindspark Interactive Network

This is the installer stub for the Mindspark (Mindspark Interactive Network, Inc./Ask) browser toolbar which provides the offer to the end user to install the toolbar and set the browser's search, home page and new tab to an Ask.com search destination. The application radiorage.f2ad7f46-83a8-4d63-bd8b-45e1066b82cf.exe by Mindspark Interactive Network has been detected as a potentially unwanted program by 9 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This version of the installer will bundle a Mindspark/MyWebSearch Toolbar, a potentially unwanted web browser extension.
Publisher:
Mindspark Interactive Network, Inc.  (signed by Mindspark Interactive Network)

Product:
RadioRage

Description:
RadioRage Setup

Version:
1.0.3.0

MD5:
5674c171ccac5a212a636a4f417f5028

SHA-1:
353f39f96c6dc6657b5bcd98d17cf3d47c98e32b

SHA-256:
fa4ffc843ecf9a1344c2671af0e4e5791b0b5124519fa9465434366259f1e070

Scanner detections:
9 / 68

Status:
Potentially unwanted

Explanation:
Bundles the Mindspark (MyWebSearch/Ask) toolbar, a web browser extension that will modify a user's search and home pages.

Analysis date:
4/18/2024 1:52:32 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Mindspark-A [PUP]
2014.9-150302

AVG
MyWebSearch
2016.0.3183

Baidu Antivirus
Adware.Win32.MyWebSearch
4.0.3.1532

Clam AntiVirus
Win.Trojan.Agent-760447
0.98/21511

G Data
Win32.Adware.Mindspark
15.3.24

Kaspersky
not-a-virus:WebToolbar.Win32.MyWebSearch
14.0.0.2410

Reason Heuristics
PUP.Installer.Mindspark
15.3.2.0

Trend Micro House Call
Suspicious_GEN.F47V1210
7.2.61

VIPRE Antivirus
35680

File size:
177.4 KB (181,704 bytes)

Product version:
1.0.3.0

Copyright:
© 2014 Mindspark Interactive Network, Inc. An IAC Company. All rights reserved.

Trademarks:
® & ™ Mindspark Interactive Network, Inc. An IAC Company. All rights reserved.

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\content.ie5\z3hyav0j\radiorage.f2ad7f46-83a8-4d63-bd8b-45e1066b82cf.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/10/2012 1:00:00 AM

Valid to:
5/7/2015 12:59:59 AM

Subject:
CN=Mindspark Interactive Network, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Mindspark Interactive Network, L=White Plains, S=NewYork, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
098417F7EA6406EC7B320590E17A65B7

File PE Metadata
Compilation timestamp:
12/25/2013 5:01:44 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:ycL0bUTppDAYzIHU5B1JuM+rXc5YIAuz7p8g6sQe1nEkWFxUWCAcMFTjuGx0xhiC:0bUTp1hiM+rXcGKzV8g6ZUWxcEPuVxhn

Entry address:
0x3229

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 14, C7, 44, 24, 10, D8, A2, 40, 00, 89, 6C, 24, 1C, FF, 15, 34, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, 34, 81, 40, 00, 55, FF, 15, AC, 82, 40, 00, 6A, 08, A3, 58, 4F, 43, 00, E8, 9F, 2E, 00, 00, A3, A4, 4E, 43, 00, 55, 8D, 44, 24, 34, 68, B4, 02, 00, 00, 50, 55, 68, B8, B1, 42, 00, FF, 15, 7C, 81, 40, 00, 68, C0, A2, 40, 00, 68, A0, 3E, 43, 00, E8, 0A, 2B, 00, 00, FF, 15, 38, 81, 40, 00, BB, 00, F0, 43, 00, 50, 53, E8, F8, 2A, 00, 00...
 
[+]

Entropy:
7.8036

Packer / compiler:
Nullsoft install system v2.x

Code size:
24.5 KB (25,088 bytes)