your_file_is_ready_to_download.exe

The application your_file_is_ready_to_download.exe has been detected as a potentially unwanted program by 3 anti-malware scanners.
MD5:
da51b8d4732c3ed2c25705728fddc7e4

SHA-1:
a31a227a497048efdb1b97f38eb0a32cc42bb5b2

SHA-256:
e2fab22fb094a645a6ea3a9e606000c6f9b4da8354b989ed9887a414b725f40e

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
4/30/2024 3:27:26 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/IStartSurf.BF potentially unwanted application
6.3.12010.0

Kaspersky
not-a-virus:AdWare.Win32.StartSurf
15.0.2.529

Reason Heuristics
Adware.iStartSurf.ET (M)
17.3.16.13

File size:
959.5 KB (982,528 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\low\content.ie5\{random}\your_file_is_ready_to_download.exe

File PE Metadata
Compilation timestamp:
3/15/2017 10:25:32 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
14.0

Entry address:
0x2040

Entry point:
E8, B2, 03, 00, 00, E9, 87, FE, FF, FF, 55, 8B, EC, 6A, 00, FF, 15, 1C, F0, 40, 00, FF, 75, 08, FF, 15, 18, F0, 40, 00, 68, 09, 04, 00, C0, FF, 15, 20, F0, 40, 00, 50, FF, 15, 24, F0, 40, 00, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 6A, 17, E8, 3A, 9C, 00, 00, 85, C0, 74, 05, 6A, 02, 59, CD, 29, A3, 50, DE, 4E, 00, 89, 0D, 4C, DE, 4E, 00, 89, 15, 48, DE, 4E, 00, 89, 1D, 44, DE, 4E, 00, 89, 35, 40, DE, 4E, 00, 89, 3D, 3C, DE, 4E, 00, 66, 8C, 15, 68, DE, 4E, 00, 66, 8C, 0D, 5C, DE, 4E, 00, 66, 8C, 1D, 38...
 
[+]

Entropy:
4.4655

Code size:
52.5 KB (53,760 bytes)

Remove your_file_is_ready_to_download.exe - Powered by Reason Core Security