4k video downloader 3.5.5.1700 full crack_(www.best4pc.com).zip.exe

GReaT APpS TLD

This is the OutBrowse Revenyou installer which bundles offers for additional third party applications that may be unwanted and installed without consent. The application 4k video downloader 3.5.5.1700 full crack_(www.best4pc.com).zip.exe by GReaT APpS TLD has been detected as adware by 5 anti-malware scanners. The program is a setup application that uses the OutBrowse Revenyou installer. The setup routine uses the RevenYou.Com Pay Per Install platform (OutBrowse) which bundles additional software offers inclduing toolbars, extensions, PC utilities as well as other PUPs.
Publisher:
SJUSW  (signed by GReaT APpS TLD)

Product:
SJUSW

Version:
4125.15617.1407.1118

MD5:
969c4842723aa66a1aaba90713209e3a

SHA-1:
b474463a02001bdb0dbf57519add60b04bce1c82

SHA-256:
49b85db39faa3fc09dda71347ad64030a9e7d5ec7a40053de1253fa00d705d71

Scanner detections:
5 / 68

Status:
Adware

Explanation:
Bundles additional adware offers during download and installation using the OutBrowse installer.

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
11/2/2024 5:19:33 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/OutBrowse.CE potentially unwanted application
7.0.302.0

K7 AntiVirus
Unwanted-Program
13.205.16270

Kaspersky
not-a-virus:HEUR:AdWare.Win32.OutBrowse
14.0.0.1873

Quick Heal
PUA.OutBrowse.A
6.15.14.00

Reason Heuristics
PUP.Outbrowse.Bundler
15.6.17.6

File size:
683.9 KB (700,328 bytes)

Product version:
4125.15617.1407.1118

Copyright:
SJUSW

Trademarks:
SJUSW

File type:
Executable application (Win32 EXE)

Bundler/Installer:
OutBrowse Revenyou (using Nullsoft Install System)

Common path:
C:\users\{user}\downloads\4k video downloader 3.5.5.1700 full crack_(www.best4pc.com).zip.exe

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
6/16/2015 9:00:00 AM

Valid to:
1/28/2016 8:59:59 AM

Subject:
CN=GReaT APpS TLD, O=GReaT APpS TLD, L=Dublin, S=Dublin, C=IE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
2D0DF6C6522305B46916D698ABC531FB

File PE Metadata
Compilation timestamp:
12/6/2009 7:52:12 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:NhgDdjipaIkDCiQm6Bj7c497nIlPXshDAZkaaFOLoWNnyc4ZOqICaWyVvGfc8vyJ:/gkpaLDn6BPRIZdiaaFOLoWJycEOqITb

Entry address:
0x30FA

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 18, 1C, 45, 00, E8, F1, 2B, 00, 00, A3, 64, 1B, 45, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 98, 37, 43, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 60, DB, 44, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, A0, 47, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Entropy:
7.9838

Packer / compiler:
Nullsoft install system v2.x

Code size:
23.5 KB (24,064 bytes)

The file 4k video downloader 3.5.5.1700 full crack_(www.best4pc.com).zip.exe has been seen being distributed by the following URL.