softonicdownloader_para_ares.exe

The application softonicdownloader_para_ares.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. The file has been seen being downloaded from ares.softonic.com.
MD5:
03d78f06dc690aff33953ecba68f1705

SHA-1:
4055c9d5f878e6b80eca06596d3bb526a32ea59f

SHA-256:
dbe4be3026f6099e5911879f1ce1373bf271cac259f854ce5fd600b5986f884b

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 10:12:03 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Softonic.Bundler (L)
16.8.5.0

File size:
519 Bytes

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\softonicdownloader_para_ares.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
12:EY7wudeBsg9datGQivsOsDyk1Q5NcQ5liAc+qsj+dtdQFg9dGApwkMzU7Q:Hw7Bd9ooEDyV5MSqs2QFg9YApwFzJ

Entry point:
4E, 6F, 74, 69, 66, 69, 63, 61, 63, 69, F3, 6E, 20, 64, 65, 20, 50, 61, 6E, 64, 61, 20, 47, 50, 20, 32, 30, 31, 34, 3A, 0D, 0A, 0D, 0A, 45, 6C, 20, 61, 72, 63, 68, 69, 76, 6F, 20, 68, 74, 74, 70, 3A, 2F, 2F, 73, 64, 2D, 63, 66, 2E, 73, 6F, 66, 74, 6F, 6E, 69, 63, 2E, 63, 6F, 6D, 2F, 32, 31, 30, 30, 30, 2F, 32, 31, 38, 32, 34, 2F, 75, 64, 5F, 30, 2F, 53, 6F, 66, 74, 6F, 6E, 69, 63, 44, 6F, 77, 6E, 6C, 6F, 61, 64, 65, 72, 5F, 70, 61, 72, 61, 5F, 61, 72, 65, 73, 2E, 65, 78, 65, 3F, 69, 64, 5F, 66, 69, 6C, 65...
 
[+]

The file softonicdownloader_para_ares.exe has been seen being distributed by the following URL.

Remove softonicdownloader_para_ares.exe - Powered by Reason Core Security