windows 8 1 aktywator downloader__3687_i1930831628_il307243.exe

lLMxSfdI0WflEVg

WJb4V8

The application windows 8 1 aktywator downloader__3687_i1930831628_il307243.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup program which is used to install the application. The installer uses the InstallMonetizer platform which will donwload and install adware toolbars and other potentially unwanted software offers during setup. The file has been seen being downloaded from www.inditedexplanatory.webcam.
Publisher:
WJb4V8

Product:
lLMxSfdI0WflEVg

Description:
z2uZMYdZdWyszM

Version:
70.56.227.203

MD5:
4327e9a13c786e4c8941e6b90a1338c0

SHA-1:
f02f452ddea461896ab5c8340174d12bfa5cff99

SHA-256:
8f86b1a0e8ce36cb79c224dc5d3d9031712cc73a2f96c62d63e96f29b3b09574

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallMonetizer distribution platform to bundle adware.

Analysis date:
6/3/2024 3:28:16 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.InstallMonetizer
16.7.15.9

File size:
995 KB (1,018,880 bytes)

Product version:
70.56.227.203

Copyright:
LC 2015

Trademarks:
Trd Mark

Original file name:
h3pEbU7O

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\windows 8 1 aktywator downloader__3687_i1930831628_il307243.exe

File PE Metadata
Compilation timestamp:
7/15/2016 9:56:32 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:qBZce2IekdCZtVIlaBZvPVE1uw0cmqUyG+xV:qBZG9tIa9Eow0fqUyG+x

Entry address:
0xD689

Entry point:
E8, 71, 41, 00, 00, E9, 7F, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 51, 8D, 4C, 24, 04, 2B, C8, 1B, C0, F7, D0, 23, C8, 8B, C4, 25, 00, F0, FF, FF, 3B, C8, 72, 0A, 8B, C1, 59, 94, 8B, 00, 89, 04, 24, C3, 2D, 00, 10, 00, 00, 85, 00, EB, E9, 6A, 03, E8, ED, 40, 00, 00, 59, 83, F8, 01, 74, 15, 6A, 03, E8, E0, 40, 00, 00, 59, 85, C0, 75, 1F, 83, 3D, A8, 14, 42, 00, 01, 75, 16, 68, FC, 00, 00, 00, E8, 31, 00, 00, 00, 68, FF, 00, 00, 00, E8, 27, 00, 00, 00, 59, 59, C3, 55, 8B, EC, 8B, 4D...
 
[+]

Code size:
91 KB (93,184 bytes)

The file windows 8 1 aktywator downloader__3687_i1930831628_il307243.exe has been seen being distributed by the following URL.