ultrawaveguitartunerdemosetup.exe

Ultrawave Guitar Tuner

Ultrawave Multimedia Studios

The application ultrawaveguitartunerdemosetup.exe, “Ultrawave Guitar Tuner Setup ” has been detected as a potentially unwanted program by 22 anti-malware scanners. The program is a setup application that uses the Inno Setup installer, however the file is not signed with an authenticode signature from a trusted source. Part of RelevantKnowledge, a program typically installed via a software bundle (with the user's knowledge should they read the EULA) and will run in the background collecting and monitoring information about the user's behavior in order to build an extensive profile.
Publisher:
Ultrawave Multimedia Studios

Product:
Ultrawave Guitar Tuner

Description:
Ultrawave Guitar Tuner Setup

MD5:
0187eb211d272b1f03a30bd4b1fb1a00

SHA-1:
950699b11570c96e4fdc641ccdf7b6c99c116603

SHA-256:
987881126b76384bfc0d8b38abcfb5275c29688ccf06b489c69e1b2ea0b8b99d

Scanner detections:
22 / 68

Status:
Potentially unwanted

Analysis date:
4/23/2024 11:36:43 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Relevant.BH
1133

Agnitum Outpost
Adware.MarketScore
7.1.1

Avira AntiVirus
ADSPY/NaviPromo.J
7.11.124.116

avast!
Win32:PUP-gen [PUP]
2014.9-131229

Bitdefender
Adware.Relevant.BH
1.0.20.1815

Bkav FE
W32.Clodd49.Trojan
1.3.0.4613

Comodo Security
ApplicUnwnt
17581

Dr.Web
Trojan.DownLoader7.55414
9.0.1.013

Emsisoft Anti-Malware
Adware.Relevant.BH
8.13.12.29.07

ESET NOD32
Win32/Adware.MarketScore
7.9271

Fortinet FortiGate
Riskware/RK
12/29/2013

F-Secure
Adware.Relevant.BH
11.2013-29-12_1

G Data
Adware.Relevant.BH
13.12.22

K7 AntiVirus
Riskware
13.175.10794

Kaspersky
not-a-virus:WebToolbar.Win32.RK
14.0.0.4548

Malwarebytes
PUP.Adware.RKN
v2013.12.29.07

MicroWorld eScan
Adware.Relevant.BH
14.0.0.1089

NANO AntiVirus
Trojan.Win32.Relevant.cbpeni
0.28.0.57029

nProtect
Adware.Relevant.BH
14.01.09.01

Sophos
RelevantKnowledge
4.96

Trend Micro House Call
TROJ_GEN.R0CCOH0JG13
7.2.363

VIPRE Antivirus
Adware.Relevant
25262

File size:
1 MB (1,079,205 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\ultrawaveguitartunerdemosetup.exe

File PE Metadata
Compilation timestamp:
6/19/1992 10:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:1QFuYCCYgHgRopTg+emfAlWgtQOnqVbcOmFs6tkeQ:1qPfARotg+em2xdqdAVQ

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, BF, A9, FF, FF, E8, 5E, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, 24, CE, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, 24, CE...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file ultrawaveguitartunerdemosetup.exe has been seen being distributed by the following URL.

Remove ultrawaveguitartunerdemosetup.exe - Powered by Reason Core Security