wnrarrar__15022_i1603299461_il1316907.exe.rar

The file wnrarrar__15022_i1603299461_il1316907.exe.rar has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install. The file has been seen being downloaded from guardveteran.com.
MD5:
366917d9bf75b9a4fee4394e16e2250f

SHA-1:
948675d70c0d05ced24b5bfdc74bc932204089c0

SHA-256:
c3f6020b785327e68f054e6cc68c054d2e56f0b1be3ed50a906af87d2d50ff5c

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
5/24/2024 8:09:05 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Amonetize.Meta (M)
16.7.10.23

File size:
634 KB (649,254 bytes)

Common path:
C:\users\{user}\downloads\wnrarrar__15022_i1603299461_il1316907.exe.rar

The file wnrarrar__15022_i1603299461_il1316907.exe.rar has been seen being distributed by the following URL.