7.data recovery suite home 3.1 multilingual serial key patch crack__7787_il160305.exe

ITL-GROUP LLC

This is the Amonetize download manager which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The application 7.data recovery suite home 3.1 multilingual serial key patch crack__7787_il160305.exe by ITL-GROUP has been detected as adware by 17 anti-malware scanners. The program is a setup application that uses the Amonetize Downloader installer. The setup program bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install.
Publisher:
ITL-GROUP LLC  (signed and verified)

Version:
1.1.6.20

MD5:
6dcae2d07fe5e2bc9c28d252756d182f

SHA-1:
8d7c6e1e0ef3a2ce90027fd3aa8ff9526b152c16

SHA-256:
51f59502b7ef5096a717b19623bd7af07934e4175ed894a53309d1842d094fc2

Scanner detections:
17 / 68

Status:
Adware

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
11/27/2024 2:36:39 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Amonetize
7.1.1

AhnLab V3 Security
PUP/Win32.Amonetiz
2014.12.11

Avira AntiVirus
ADWARE/Adware.Gen4
7.11.194.74

AVG
Generic
2016.0.3227

Dr.Web
Trojan.Amonetize.279
9.0.1.017

ESET NOD32
Win32/Amonetize.CH (variant)
9.10861

Fortinet FortiGate
Adware/Amonetize
1/17/2015

K7 AntiVirus
Unwanted-Program
13.186.14309

Kaspersky
not-a-virus:AdWare.Win32.Amonetize
14.0.0.2630

McAfee
Artemis!6DCAE2D07FE5
5600.6883

NANO AntiVirus
Riskware.Win32.Amonetize.djsswg
0.28.6.63850

Panda Antivirus
Generic Suspicious
15.01.17.01

Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen
1.0.0.1015

Reason Heuristics
PUP.Installer.ITLGROUP
15.1.17.1

Sophos
Generic PUA IN
4.98

Trend Micro House Call
Suspicious_GEN.F47V1209
7.2.17

VIPRE Antivirus
Trojan.Win32.Generic
35624

File size:
589.2 KB (603,368 bytes)

Product version:
1.1.6.20

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Bundler/Installer:
Amonetize Downloader

Language:
English (United States)

Common path:
C:\users\{user}\downloads\7.data recovery suite home 3.1 multilingual serial key patch crack__7787_il160305.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
10/19/2014 10:00:00 PM

Valid to:
10/20/2015 9:59:59 PM

Subject:
CN=ITL-GROUP LLC, O=ITL-GROUP LLC, L=Selyshche Doslidne, S=Selyshche Doslidne, C=UA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
080AA229F6377F023DF6C8F878AC3719

File PE Metadata
Compilation timestamp:
12/1/2014 8:34:18 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:0+QO2iSuC4JXQZRghZWU7sTqcIjz/mAM9/t8+019QAF9:0TO2L7EDW/eTjyAMtt8jXF9

Entry address:
0xDA44

Entry point:
E8, 78, 78, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, 7D, 08, 00, 74, 2D, FF, 75, 08, 6A, 00, FF, 35, 7C, FF, 38, 00, FF, 15, C4, 70, 38, 00, 85, C0, 75, 18, 56, E8, 8D, 2F, 00, 00, 8B, F0, FF, 15, 24, 70, 38, 00, 50, E8, 3D, 2F, 00, 00, 59, 89, 06, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 56, 8D, 45, 08, 50, 8B, F1, E8, B0, E2, FF, FF, C7, 06, 1C, 7C, 38, 00, 8B, C6, 5E, 5D, C2, 04, 00, C7, 01, 1C, 7C, 38, 00, E9, F4, E2, FF, FF, 8B, FF, 55, 8B, EC, 56, 8B, F1, C7, 06, 1C, 7C, 38, 00, E8, E1, E2, FF, FF...
 
[+]

Code size:
150.5 KB (154,112 bytes)

The file 7.data recovery suite home 3.1 multilingual serial key patch crack__7787_il160305.exe has been seen being distributed by the following URL.