music-tag-finder-mmt.exe

Free Music Tag Finder

Soft Integrator Ltd.

The application music-tag-finder-mmt.exe, “Free Music Tag Finder Setup ” by Soft Integrator has been detected as a potentially unwanted program by 2 anti-malware scanners. This is a setup and installation application and has been known to bundle potentially unwanted software. The installer uses the OpenCandy monitzation platform which will donwload and install offers in the setup for potentially unwanted software including ad/search-supported toolbars. The file has been seen being downloaded from www.mediaprolab.com and multiple other hosts.
Publisher:
MediaProLab.com   (signed by Soft Integrator Ltd.)

Product:
Free Music Tag Finder

Description:
Free Music Tag Finder Setup

MD5:
d7d7321e526dc2e1e96b62bdafb9c922

SHA-1:
1e0c6116b1f4a63fa3276a513d6cffdbbcc21105

SHA-256:
337aacbd3fef854ef5ccd98b368df6e9cc499848e8f0c584223b9cb691ed9acd

Scanner detections:
2 / 68

Status:
Potentially unwanted

Explanation:
Packages the OpenCandy software bundler that offers to install additional software and may include web browser add-ons and toolbars which display advertising (based on publisher settings and geo context).

Analysis date:
11/29/2021 7:05:15 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
8.9700

Reason Heuristics
PUP.SoftIntegrator.Bundle.Installer.Meta (M)
16.2.24.9

File size:
3.4 MB (3,587,008 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\Music-tag-finder-mmt.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
9/18/2012 2:00:00 AM

Valid to:
9/19/2017 1:59:59 AM

Subject:
CN=Soft Integrator Ltd., O=Soft Integrator Ltd., STREET=34-B Predslavinskaya, L=Kyiv, S=Kyiv, PostalCode=03150, C=UA

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00940377CC336C213475B843DA476735C9

File PE Metadata
Compilation timestamp:
1/30/2013 3:21:56 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:VtbT0yrgCUdIrDTe25WSbdIUQb0pi+crwQgmPXuaESoB:V10qFXrDz5WSLi+criW+rV

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 2C, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 16, D8, FF, FF, E8, 65, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 2B, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 50, 86...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file music-tag-finder-mmt.exe has been seen being distributed by the following 3 URLs.

Remove music-tag-finder-mmt.exe - Powered by Reason Core Security