zipper.exe

The application zipper.exe has been detected as a potentially unwanted program by 6 anti-malware scanners.
MD5:
3cb2d1d846c2e10736b49454efe6a635

SHA-1:
6d2758cf1d9fd26ecdbb6d21364ff98a5b26364a

SHA-256:
d330443c18e82f884bd81cc3f1de53e486e39e61de5f172f28d084f667d411f9

Scanner detections:
6 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 2:53:38 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Adware-CHY [Adw]
160205-1

Dr.Web
Adware.Mutabaha.100
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Kazy.536720
10.0.0.5366

ESET NOD32
Win32/ELEX.BH potentially unwanted application
7.0.302.0

Norman
Gen:Variant.Kazy.536720
03.02.2016 07:38:05

Sophos
PUA 'Elex' (of type Adware)
5.23

File size:
1 MB (1,060,864 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\zipper.exe

File PE Metadata
Compilation timestamp:
12/31/2014 1:19:55 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:pr2hBWuG8gCyWVOPv29frsXmru7rdZFYAP:pr0B7gPEjsXFBHYAP

Entry address:
0x1310B

Entry point:
E8, EE, 8E, 00, 00, E9, 7F, FE, FF, FF, 55, 8B, EC, 8B, 45, 14, 56, 85, C0, 74, 3C, 83, 7D, 08, 00, 75, 13, E8, FF, 0C, 00, 00, 6A, 16, 5E, 89, 30, E8, 4C, 68, 00, 00, 8B, C6, EB, 25, 83, 7D, 10, 00, 74, E7, 39, 45, 0C, 73, 09, E8, E1, 0C, 00, 00, 6A, 22, EB, E0, 50, FF, 75, 10, FF, 75, 08, E8, E7, DD, FF, FF, 83, C4, 0C, 33, C0, 5E, 5D, C3, 55, 8B, EC, 56, 8B, F1, 8B, 4D, 08, C6, 46, 0C, 00, 85, C9, 75, 66, E8, 05, 6B, 00, 00, 8B, D0, 89, 56, 08, 8B, 4A, 6C, 89, 0E, 8B, 4A, 68, 89, 4E, 04, 8B, 0E, 3B, 0D...
 
[+]

Code size:
244.5 KB (250,368 bytes)

Remove zipper.exe - Powered by Reason Core Security