softonicdownloader_para_snagit.exe

The application softonicdownloader_para_snagit.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. The file has been seen being downloaded from snagit.softonic.com.
MD5:
ee4cf64255b2088b223f49e8bf7e5c9a

SHA-1:
7d78099dd6f45ffc03b047f5bf9254431094dccd

SHA-256:
11c2479a742638132ca70da7489405f914c5804695a877b26d84ddd05e942aa5

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 10:09:50 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Softonic.Bundler.Meta (L)
16.4.26.15

File size:
356.9 KB (365,488 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\softonicdownloader_para_snagit.exe

File PE Metadata
Compilation timestamp:
7/23/2014 5:08:19 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:+VzRNQw91Wcgpfa3+dXXxK8/zE+0VF8axwDEXAR5iOvvWTMDADroSbIrK0ZJGU:gOYWcGakXIWXEF5XG5iO3WTMA/oSb/8R

Entry address:
0xF7050

Entry point:
CA, 0F, AF, C1, 39, C7, 73, 23, 89, C6, B8, 00, 08, 00, 00, 29, C8, 8B, 6C, 24, 38, C1, F8, 05, 8D, 04, 02, 66, 89, 85, B0, 01, 00, 00, 8B, 44, 24, 58, E9, A0, 00, 00, 00, 89, F1, 29, C7, 29, C1, 89, D0, 66, C1, E8, 05, 66, 29, C2, 8B, 44, 24, 38, 81, F9, FF, FF, FF, 00, 66, 89, 90, B0, 01, 00, 00, 77, 16, 3B, 5C, 24, 4C, 0F, 84, A1, 04, 00, 00, 0F, B6, 03, C1, E7, 08, C1, E1, 08, 43, 09, C7, 8B, 74, 24, 38, 89, C8, C1, E8, 0B, 66, 8B, 96, C8, 01, 00, 00, 0F, B7, EA, 0F, AF, C5, 39, C7, 73, 20, 89, C6, B8...
 
[+]

Code size:
316 KB (323,584 bytes)

The file softonicdownloader_para_snagit.exe has been seen being distributed by the following URL.

Remove softonicdownloader_para_snagit.exe - Powered by Reason Core Security