virusshare_612b917fa835bb07efc89068698634f0

appbundler.com

This is a component for the Pinball ad-supported platform which may deliver advertisemenst to the web browser in the form of banner and text ads. The file virusshare_612b917fa835bb07efc89068698634f0 by appbundler.com has been detected as adware by 32 anti-malware scanners.
Publisher:
appbundler.com  (signed and verified)

Description:
Setup

Version:
3.0.113.3

MD5:
612b917fa835bb07efc89068698634f0

SHA-1:
05abfd4daaee4df17188d58f8aaa6c42ea926863

SHA-256:
b913f9909d5d82fc1f2858d116143f1d663476309dbc09cacec818be97bee158

Scanner detections:
32 / 68

Status:
Adware

Analysis date:
4/24/2024 12:12:38 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Hotbar.14
463

Agnitum Outpost
PUA.ScreenSaver
7.1.1

Avira AntiVirus
Adware/Hotbar.aok
7.11.150.178

avast!
Win32:Zango-AQ [PUP]
2014.9-151030

AVG
Skodna.Generic_r
2016.0.2941

Baidu Antivirus
Adware.Win32.AdWare.HotBar
4.0.3.151030

Bitdefender
Gen:Variant.Adware.Hotbar.14
1.0.20.1515

Comodo Security
ApplicUnwnt.Win32.AdWare.ScreenSaver.DI
18306

Dr.Web
Adware.Hotbar.700
9.0.1.0303

Emsisoft Anti-Malware
Gen:Variant.Adware.Hotbar.14
8.15.10.30.05

ESET NOD32
Win32/AdWare.HotBar
9.9827

Fortinet FortiGate
Adware/Hotbar
10/30/2015

F-Prot
W32/HotBar.O.gen
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.Hotbar.14
11.2015-30-10_6

G Data
Gen:Variant.Adware.Hotbar.14
15.10.24

IKARUS anti.virus
not-a-virus:AdWare.Win32.ScreenSaver
t3scan.1.6.1.0

K7 AntiVirus
Adware
13.178.12140

Kaspersky
not-a-virus:HEUR:AdWare.Win32.ScreenSaver
14.0.0.1199

Malwarebytes
Adware.AdBundle
v2015.10.30.05

McAfee
Adware-HotBar.d
5600.6597

Microsoft Security Essentials
Adware:Win32/Hotbar
1.10600

MicroWorld eScan
Gen:Variant.Adware.Hotbar.14
16.0.0.909

NANO AntiVirus
Trojan.Win32.Click2.bxnutx
0.28.0.59921

Norman
180Solutions.BSE
11.20151030

Qihoo 360 Security
Malware.QVM11.Gen
1.0.0.1015

Quick Heal
Adware.Hotbar.B5
10.15.14.00

Reason Heuristics
PUP.Pinball.appbundler.Installer (M)
15.10.30.5

Sophos
Hotbar
4.98

Total Defense
Win32/Zango.Pinball.B[HOTBAR]
37.0.10949

Vba32 AntiVirus
AdWare.ScreenSaver
3.12.26.0

VIPRE Antivirus
Pinball Corporation.
29432

Zillya! Antivirus
Adware.HotBar.Win32.1102
2.0.0.1795

File size:
341.7 KB (349,872 bytes)

Product version:
3.0.113.3

Language:
English (United States)

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
12/10/2012 1:00:00 AM

Valid to:
1/10/2015 12:59:59 AM

Subject:
CN=appbundler.com, OU=Ops, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=appbundler.com, L=Bellevue, S=Washington, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
12E277DA6E659BFE14CD01F5A2AA95C5

File PE Metadata
Compilation timestamp:
2/22/2013 6:21:16 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:UfZ/nwzIhoZib9i0ju9BKVoEZUWFCWrR2lJkDaJ2w0zidFnrjft4:UfpPOZiBiq3zxgW1I+07FnHft4

Entry address:
0xBC310

Entry point:
60, BE, 00, A0, 46, 00, 8D, BE, 00, 70, F9, FF, 57, EB, 0B, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89, C5, EB, 0B, 01, DB, 75, 07, 8B...
 
[+]

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.24

Code size:
332 KB (339,968 bytes)

Remove virusshare_612b917fa835bb07efc89068698634f0 - Powered by Reason Core Security