theme windows 7 accel world_10924_i43886841_il345.exe

Runner Utility

BERSHNET LLC

The application theme windows 7 accel world_10924_i43886841_il345.exe by BERSHNET has been detected as adware by 24 anti-malware scanners. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install.
Publisher:
Dummy, Ltd.  (signed by BERSHNET LLC)

Product:
Runner Utility

Version:
1.0.0.187

MD5:
e0c29ac7636acb38e39b80245bdd95ba

SHA-1:
fb5443ccf5f761ce60142a22de7a27478309c277

SHA-256:
d8dc409be065a68da582ab263a8a9a3ed1e0d36183db6f6b9e56e57bafc3c397

Scanner detections:
24 / 68

Status:
Adware

Analysis date:
4/26/2024 10:05:32 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Mikey.8247
680

AhnLab V3 Security
Trojan/Win32.LoadMoney
2015.03.15

Avira AntiVirus
ADWARE/Adware.Gen7
7.11.217.78

AVG
Generic
2016.0.3158

Bitdefender
Gen:Variant.Adware.Mikey.8247
1.0.20.430

Comodo Security
Application.Win32.LoadMoney.IARS
21412

Emsisoft Anti-Malware
Gen:Variant.Adware.Mikey.8247
8.15.03.27.07

ESET NOD32
Win32/Amonetize.DW potentially unwanted (variant)
9.11321

F-Prot
W32/S-40484255
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.Mikey
11.2015-27-03_6

G Data
Gen:Variant.Adware.Mikey.8247
15.3.25

K7 AntiVirus
Unwanted-Program
13.200.15262

Kaspersky
not-a-virus:Downloader.Win32.Agent
14.0.0.2283

Malwarebytes
PUP.Optional.Amonetize
v2015.03.27.07

MicroWorld eScan
Gen:Variant.Adware.Mikey.8247
16.0.0.258

Panda Antivirus
Trj/Genetic.gen
15.03.27.07

Reason Heuristics
PUP.BERSHNET
15.3.27.7

VIPRE Antivirus
Amonetize
38424

File size:
1.4 MB (1,508,368 bytes)

Product version:
1.0.0.187

Copyright:
Copyright (C) 2013

Original file name:
runner.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\theme windows 7 accel world_10924_i43886841_il345.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/6/2015 1:00:00 AM

Valid to:
2/7/2016 12:59:59 AM

Subject:
CN=BERSHNET LLC, O=BERSHNET LLC, STREET="st. 600-richya b.66, of.10", L=Vinnitsya, S=Vinnitskaya, PostalCode=21027, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00E2D6C6F8DDF832E09DCF766B299AD2A9

File PE Metadata
Compilation timestamp:
3/14/2015 11:53:08 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
24576:+94YanFQYZt2qqbunKARDi3JMMXE30q8UGzumZAwHlcY1LVKB5OoT2u8+QachGJF:+iYaF/8tbYvDSJMMs0q8UmhFcioBInpI

Entry address:
0x3C2123

Entry point:
60, C7, 44, 24, 1C, 17, 6E, 90, 69, 68, D0, B3, 06, 46, C7, 44, 24, 1C, 3B, 38, 95, 54, 68, 28, 1D, 07, 84, 60, 56, 9C, 8D, 64, 24, 48, E9, 6D, 0F, 01, 00, 95, 28, 12, 72, 28, 48, F6, A8, C0, 66, 9C, 9C, 18, 5F, E0, 86, D4, F4, C2, E2, 3C, 1C, C3, 35, 38, 16, F4, 6A, 5D, 40, 5E, 6C, 2B, 70, CD, F1, 1C, 10, 00, 9E, 73, 41, CB, 85, BF, 99, 99, 6B, 96, 40, BD, 5B, A9, 9B, 9B, 41, 9C, 5A, A7, 51, 8C, 4E, B1, 53, ED, 3E, 80, 3E, 8D, 5F, 36, F8, FE, FC, 43, 45, A7, 19, 12, 67, 9A, 95, 0D, 2B, E9, F4, 32, 2C, 98...
 
[+]

Code size:
187.5 KB (192,000 bytes)