SmarterDownloader.exe

Smarter Downloader

CoolMirage LTD.

This is part of a CoolMirage installatation, a potentially unwanted program (PUP) that display ads on the computer. The application SmarterDownloader.exe by CoolMirage has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. The setup installer will bundle multiple adware offers during download and setup (based on the user's geographical location) including toolbars, extensions and coupon utilities.
Publisher:
Cool Mirage  (signed by CoolMirage LTD.)

Product:
Smarter Downloader

Version:
1.9.1.1

MD5:
03392219070cbe1ed79e57fcd9c11553

SHA-1:
52304f424fef4ced650288a4030d82eba5768b37

SHA-256:
1491d4153d5acd28095e5ad3ff2d07da70a1d684d9837c12c16e63cdb376b5c2

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Bundles a number of adware programs in the installer.

Analysis date:
4/25/2024 6:25:43 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.CoolMirage (M)
16.7.25.9

File size:
2.6 MB (2,714,304 bytes)

Product version:
1.9.1.1

Copyright:
Copyright © Cool Mirage 2013

Original file name:
SmarterDownloader.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\smarterdownloader.com\smarterdownloader.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/26/2014 3:00:00 AM

Valid to:
11/10/2015 2:59:59 AM

Subject:
CN=CoolMirage LTD., O=CoolMirage LTD., L=Tel Aviv, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
029E9B7F7CD982D1F52BA19EDA66E340

File PE Metadata
Compilation timestamp:
9/8/2014 8:31:05 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:YKUev9gzgMzAtwi2NlRp3j2J3pK761Y8SerMTRz3P9J+biO3+ukUIbaHvrr/yHZv:7Uev9gzjEtwi2yJ5p17MTZeZkzMrYXkW

Entry address:
0x292D2E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9328

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
2.6 MB (2,690,560 bytes)

Remove SmarterDownloader.exe - Powered by Reason Core Security