softonicdownloader_for_winhotspot-virtual-wifi-router.exe

Softonic Downloader

Softonic

The application softonicdownloader_for_winhotspot-virtual-wifi-router.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the Softonic Downloader installer, however the file is not signed with an authenticode signature from a trusted source. The file has been seen being downloaded from winhotspot-virtual-wifi-router.en.softonic.com.
Publisher:
Softonic

Product:
Softonic Downloader

Version:
1, 40, 1, 0

MD5:
62a9f92517e35e1b98fa74505687bdf0

SHA-1:
9fa9e7116ad7015b063ab863f445fb5616f50fa7

SHA-256:
0732795e1fe073ee1c394626083d72093c79a1c24bb949b602d3b12e6ec2809f

Scanner detections:
1 / 68

Status:
Potentially unwanted

Description:
This is an installer which may bundle legitimate applications with offers for additional 3rd-party applications that may be unwanted by the user. While the installer contains an 'opt-out' feature this is not set be defult and is usually overlooked.

Analysis date:
4/25/2024 11:42:15 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Softonic.Bundler.Meta (L)
16.5.21.3

File size:
1.5 MB (1,593,344 bytes)

Product version:
1, 40, 1, 0

Copyright:
Copyright (C) 2013

Original file name:
SoftonicDownloader.exe

File type:
Executable application (Win32 EXE)

Bundler/Installer:
Softonic Downloader

Language:
Spanish

Common path:
C:\users\{user}\downloads\softonicdownloader_for_winhotspot-virtual-wifi-router.exe

File PE Metadata
Compilation timestamp:
11/12/2013 11:47:15 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:QTHiFlkI9s6dRi7X4+C9rr5TLeqvkQXoSN+OwJD13n8:QTHEkBORij4+yrrlL+4+zJDVn

Entry address:
0x15F630

Entry point:
BD, 26, 5A, B4, 10, 88, F4, 4D, 49, 84, CA, F6, C7, BF, 2D, F0, 04, AA, F3, EB, 05, 87, F8, 0F, BF, CD, 85, D3, 74, 05, F3, 87, FD, 29, EA, 3B, D9, 30, DF, 3B, D0, 69, D6, 1A, 14, 4A, 46, 89, DA, 1D, D2, 30, 96, 5C, F6, C2, 8C, 23, CE, F6, C5, 75, E8, 7A, 00, 00, 00, 0B, FD, 8D, 0D, 2E, 9A, DC, 62, 8A, D6, 1D, 73, B0, 63, D0, 8D, 3D, 9D, DF, 43, 75, 1B, F0, 8B, DF, EB, 09, B2, F8, 85, FA, 05, 76, B7, 8C, 45, 88, FC, FE, C8, F3, 2B, EB, 0F, AF, CB, 81, D0, BD, 1F, 44, 05, 86, CE, BA, 00, 00, 00, 00, 0F, AF...
 
[+]

Code size:
352 KB (360,448 bytes)

The file softonicdownloader_for_winhotspot-virtual-wifi-router.exe has been seen being distributed by the following URL.