10_avast_launcher.exe

Mega Boost

PLT

The application 10_avast_launcher.exe has been detected as a potentially unwanted program by 5 anti-malware scanners. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install. The file has been seen being downloaded from www.perisigmoiditisgashing.site.
Publisher:
PLT

Product:
Mega Boost

Description:
cmpnnt

Version:
164.166.146.248

MD5:
e2a6f2ce73078c4be930405c045035a9

SHA-1:
4128d2342a4df3651d3974c3ebe36626955345cd

SHA-256:
cf5bda668b24188b7092065ade2711f12cbbe0a78b0bbc0e73b8c6eae79782cd

Scanner detections:
5 / 68

Status:
Potentially unwanted

Analysis date:
6/29/2025 12:17:35 AM UTC  (today)

Scan engine
Detection
Engine version

Emsisoft Anti-Malware
Gen:Application.Imonetize
11.5.0.6191

ESET NOD32
Win32/Amonetize.SJ potentially unwanted application
8.0.319.0

F-Secure
Application.Imonetize.2
5.15.96

Norman
Gen:Application.Imonetize.2
02.04.2016 17:35:19

Reason Heuristics
Adware.Amonetize.ET (M)
16.4.25.19

File size:
1.2 MB (1,245,696 bytes)

Product version:
164.166.146.248

Copyright:
LC 2015

Trademarks:
Pepcyc

Original file name:
build.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
4/26/2016 2:01:01 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:E+wUN0c+nfLBZRwpUWUyHS8JaIim/xohlnc3NFLEJ8p+7/ZgnSRv5KlO1a5WU088:E+n0c+nfLRiUWUyHS8QIim/ChlnmbI+p

Entry address:
0x6F37

Entry point:
E8, 7F, 5A, 00, 00, E9, 39, FE, FF, FF, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 5F, 00, 00, 00, C7, 06, 48, 08, 42, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, 5F, 00, 00, 00, C7, 06, 48, 08, 42, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 56, FF, 75, 08, 8B, F1, E8, A0, 00, 00, 00, C7, 06, 30, 08, 42, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 56, 8D, 45, 08, 50, 8B, F1, E8, 44, 00, 00, 00, C7, 06, 30, 08, 42, 00, 8B, C6, 5E, 5D, C2, 04, 00, 55, 8B, EC, 56, FF, 75, 08, 8B, F1...
 
[+]

Entropy:
7.0875

Code size:
118 KB (120,832 bytes)

The file 10_avast_launcher.exe has been seen being distributed by the following URL.

Remove 10_avast_launcher.exe - Powered by Reason Core Security