savefromnethelper-web-05e33628a0-.exe

Magicbit, Inc

The application savefromnethelper-web-05e33628a0-.exe by Magicbit, Inc has been detected as a potentially unwanted program by 2 anti-malware scanners.
Publisher:
Magicbit, Inc  (signed and verified)

Version:
1.0.0.0

MD5:
84a13704bc18ad55f63f9d5621775cf8

SHA-1:
f126c098d996115e7f0b3b043c1c789fb43ac538

SHA-256:
024502e3b3eacba7aa4b31448089b80753277b74a5f4c0a9a55acd9d72110f13

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 2:51:33 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Magicbit.C potentially unwanted application
7.0.302.0

Reason Heuristics
PUP.Magicbit.Savefrom.Meta (L)
16.3.2.21

File size:
2.8 MB (2,920,832 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\savefromnethelper-web-05e33628a0-.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
4/21/2014 8:00:00 AM

Valid to:
4/21/2017 7:59:59 AM

Subject:
CN="Magicbit, Inc", O="Magicbit, Inc", STREET="901 N. Pitt Street, Suite 325", L=Alexandria, S=VA, PostalCode=22314, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B5B2652535A2ACE1ACBFF9D5D7816AD4

File PE Metadata
Compilation timestamp:
11/27/2015 2:13:35 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:bHu1sFHX1bjk52SW6rOD5t03yP54J/9k:bHSsFHsra03yP5gy

Entry address:
0x275E00

Entry point:
55, 8B, EC, 83, C4, F0, B8, 70, B8, 66, 00, E8, 30, 84, D9, FF, A1, B4, B4, 67, 00, 8B, 00, E8, 30, BE, F5, FF, A1, B4, B4, 67, 00, 8B, 00, B2, 01, E8, 42, DB, F5, FF, 8B, 0D, 74, B2, 67, 00, A1, B4, B4, 67, 00, 8B, 00, 8B, 15, 98, 91, 66, 00, E8, 22, BE, F5, FF, A1, B4, B4, 67, 00, 8B, 00, E8, 72, BF, F5, FF, E8, D9, 31, D9, FF, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6032

Developed / compiled with:
Microsoft Visual C++

Code size:
2.5 MB (2,573,312 bytes)

Remove savefromnethelper-web-05e33628a0-.exe - Powered by Reason Core Security