00000000

SystemNode

MG Software

This is part of a bundled installer which provides applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The file 00000000 by MG Software has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
SwapSystem  (signed by MG Software)

Product:
SystemNode

Description:
SystemComponent

Version:
4, 0, 34, 0

MD5:
04d18950c2581a364f662fcb86c2d381

SHA-1:
2c477f3db70dc100066e8b38acaad2fc55ba2f7f

SHA-256:
774d2d4dd2a146bc41e4848faec3e93f6dbc02befbe4e6268b549e6143bbbac2

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/26/2024 12:15:57 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.New IT Limited
17.2.28.1

File size:
38 KB (38,952 bytes)

Product version:
4, 0, 34, 0

Copyright:
2014

Trademarks:
SmallTrade Inc.

Original file name:
0008.exe

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\google\chrome\user data\default\file system\000\t\00\00000000

Digital Signature
Signed by:

Authority:
MG

Valid from:
11/7/2014 5:05:37 PM

Valid to:
12/31/2039 11:59:59 PM

Subject:
CN=MG Software

Issuer:
CN=MG

Serial number:
0782F693BAAA668C4F8C7587B588BD86

File PE Metadata
Compilation timestamp:
12/5/2014 5:56:44 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x338E

Entry point:
55, 8B, EC, 83, EC, 44, 56, FF, 15, 54, 40, 40, 00, 8B, F0, 8A, 06, 3C, 22, 74, 10, 3C, 20, 7E, 1E, 46, 80, 3E, 20, 7F, FA, EB, 16, 3C, 22, 74, 11, 46, 8A, 06, 84, C0, 75, F5, 3C, 22, 75, 07, EB, 04, 3C, 20, 7F, 07, 46, 8A, 06, 84, C0, 75, F5, 83, 65, E8, 00, 8D, 45, BC, 50, FF, 15, 30, 40, 40, 00, E8, 5B, 00, 00, 00, 68, 04, 60, 40, 00, 68, 00, 60, 40, 00, E8, 32, 00, 00, 00, F6, 45, E8, 01, 59, 59, 74, 06, 0F, B7, 45, EC, EB, 03, 6A, 0A, 58, 50, 56, 6A, 00, 6A, 00, FF, 15, 2C, 40, 40, 00, 50, E8, 93, FC...
 
[+]

Entropy:
5.5208

Developed / compiled with:
Microsoft Visual C++

Code size:
9.5 KB (9,728 bytes)

Remove 00000000 - Powered by Reason Core Security