videoconverter_v5.exe

The application videoconverter_v5.exe has been detected as a potentially unwanted program by 14 anti-malware scanners. This is a setup program which is used to install the application. It uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions. The file has been seen being downloaded from www.securefiledownload.com.
MD5:
c9cbaf5f2bc5d8d69185732892bfb879

SHA-1:
6347e4f0f5e5ec218a4b53b4166910c15fd5427a

SHA-256:
f9a09b6584f6c762a70cb84abe050b3361480bef0b8d63fed399aeac9de0c590

Scanner detections:
14 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Analysis date:
4/25/2024 2:30:15 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.InstallCore
2013.10.14

Avira AntiVirus
APPL/Downloader.Gen6
7.11.107.120

Bitdefender
Adware.Generic.377680
1.0.20.25

Comodo Security
UnclassifiedMalware
17100

Dr.Web
Adware.InstallCore.80
9.0.1.05

Emsisoft Anti-Malware
Adware.Generic.377680
8.16.01.05.11

ESET NOD32
Win32/InstallCore.AZ (variant)
10.8912

F-Prot
W32/InstallCore.W2.gen
v6.4.7.1.166

F-Secure
Adware.Generic.377680
11.2016-05-01_3

G Data
Adware.Generic.377680
16.1.22

McAfee
Artemis!C9CBAF5F2BC5
5600.6529

MicroWorld eScan
Adware.Generic.377680
17.0.0.15

VIPRE Antivirus
Click run software
22348

File size:
1.9 MB (2,035,984 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\videoconverter_v5.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:trUeYg5fmzgo6cDG5E14sKzVNsRsAcpINWQKFKB2K8:Wo5fmzgHrC1RKB6RapI6K

Entry address:
0xD57E0

Entry point:
55, 8B, EC, 83, C4, F0, B8, E8, 12, 40, 00, E8, A4, D3, FF, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
866 KB (886,784 bytes)

The file videoconverter_v5.exe has been seen being distributed by the following URL.

Remove videoconverter_v5.exe - Powered by Reason Core Security