softonicdownloader_dla_spybot-search-destroy.exe

The application softonicdownloader_dla_spybot-search-destroy.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. The file has been seen being downloaded from spybot-search-destroy.softonic.pl.
MD5:
9ef956e342ea4280bcbd40900a0de573

SHA-1:
beb038fb2974c1d357c599218748c13f6ac48498

SHA-256:
fd9b9545dc9241d092382a1826a479bec18baf66cc5c3e2cd713124fc72e08b0

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
5/1/2024 11:04:28 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Softonic.Bundler.Meta (L)
16.7.11.10

File size:
357.4 KB (365,988 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\softonicdownloader_dla_spybot-search-destroy.exe

File PE Metadata
Compilation timestamp:
9/10/2014 4:42:10 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:nRdwyZ+TWtnQGj5faiVoHORtZ3P1SlKxhr3N9aSuil7MC0rbQJUBoS9aCK0ZJGZ:Rl+IrVfavORr4lUd9aTtYJEoS9s8G

Entry address:
0xF72C0

Entry point:
38, C1, F8, 05, 8D, 04, 02, 66, 89, 85, B0, 01, 00, 00, 8B, 44, 24, 58, E9, A0, 00, 00, 00, 89, F1, 29, C7, 29, C1, 89, D0, 66, C1, E8, 05, 66, 29, C2, 8B, 44, 24, 38, 81, F9, FF, FF, FF, 00, 66, 89, 90, B0, 01, 00, 00, 77, 16, 3B, 5C, 24, 4C, 0F, 84, A1, 04, 00, 00, 0F, B6, 03, C1, E7, 08, C1, E1, 08, 43, 09, C7, 8B, 74, 24, 38, 89, C8, C1, E8, 0B, 66, 8B, 96, C8, 01, 00, 00, 0F, B7, EA, 0F, AF, C5, 39, C7, 73, 20, 89, C6, B8, 00, 08, 00, 00, 29, E8, 8B, 6C, 24, 38, C1, F8, 05, 8D, 04, 02, 66, 89, 85, C8...
 
[+]

Code size:
316 KB (323,584 bytes)

The file softonicdownloader_dla_spybot-search-destroy.exe has been seen being distributed by the following URL.