sitecom_wireless_network_usb_adapter_turbo_g_wl_172.exe

The application sitecom_wireless_network_usb_adapter_turbo_g_wl_172.exe has been detected as a potentially unwanted program by 27 anti-malware scanners. It uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions.
MD5:
975fad69fd9357773405b0e3c785d1b9

SHA-1:
8bd862bc200428135e88abcb32c1294c1646c5bb

SHA-256:
8a313c1922dab76f723983f3903f3d132c41f82084bd7da77674bacdc5c68a82

Scanner detections:
27 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Analysis date:
4/23/2024 5:42:16 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.InstallCore.BN
678

AhnLab V3 Security
Trojan/Win32.ADH
2013.11.04

Avira AntiVirus
APPL/Downloader.Gen6
7.11.98.72

AVG
InstallCore
2016.0.3156

Bitdefender
Application.InstallCore.BL
1.0.20.435

Bkav FE
W32.HfsAutoA
1.3.0.4959

Clam AntiVirus
Win.Adware.Mediafinder-1
0.98/19010

Comodo Security
UnclassifiedMalware
16830

Dr.Web
Adware.MediaFinder.2
9.0.1.087

Emsisoft Anti-Malware
Application.InstallCore.BN
8.15.03.28.11

ESET NOD32
Win32/InstallCore.AL (variant)
9.8999

F-Prot
W32/InstallCore.V2.gen
v6.4.7.1.166

F-Secure
Application.InstallCore.BL
11.2015-28-03_7

G Data
Application.InstallCore.BL
15.3.22

K7 AntiVirus
Unwanted-Program
13.173.10067

McAfee
Artemis!E504AD358AB8
5600.6812

MicroWorld eScan
Application.InstallCore.BL
16.0.0.261

NANO AntiVirus
Riskware.Win32.MediaFinder.cwiyju
0.28.0.59911

Panda Antivirus
PUP/MultiToolbar.A
15.03.28.11

Qihoo 360 Security
Malware.QVM20.Gen
1.0.0.1015

Reason Heuristics
Threat.Win.Reputation.IMP
15.3.28.23

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
23.00.65.15326

Trend Micro House Call
TROJ_GEN.RCBZ1JT
7.2.87

Trend Micro
TROJ_GEN.RCBZ1JT
10.465.28

VIPRE Antivirus
Click run software
20918

File size:
1 MB (1,061,352 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\sitecom_wireless_network_usb_adapter_turbo_g_wl_172.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:ZuTLM8ltPR3e5KljbsfPbDd/UyMoJKRB3TrnMJvoSpY0JDDcLGLKIQ0EXt:GY8ltPRznsfPvd/UboJKRVDS7KLt04

Entry address:
0xC60A0

Entry point:
55, 8B, EC, 83, C4, F0, B8, 2C, 3E, 41, 00, E8, 2E, FA, FF, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
812 KB (831,488 bytes)