76eddbc66bb66677aeb7b7586309475edcb52e95

Click Start Media

The file 76eddbc66bb66677aeb7b7586309475edcb52e95 by Click Start Media has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is installed within the Mozilla Firefox web browser as part of an addin/plugin.
Publisher:
Click Start Media  (signed and verified)

Product:
Click Start Media

Version:
15.7.1.8591

MD5:
62573afbeefc6c06b8a65cd67a323163

SHA-1:
758ab06cfe55a02e3ffb9ba31aa39abe1fab9345

SHA-256:
6e6a3246d31a7e525e01126dadc53a8ef597f9d79842770aa46ca00e01c08980

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/24/2024 6:55:15 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.ClickSta.Installer (M)
16.3.22.0

File size:
1.2 MB (1,260,056 bytes)

Product version:
15.7.1.8591

Copyright:
Copyright (C) 2015

Original file name:
setup.exe

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\mozilla\firefox\profiles\ccaccbf1-7ab4-4cf5-b32d-668c686a539f\cache2\entries\76eddbc66bb66677aeb7b7586309475edcb52e95

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
11/7/2015 6:06:38 AM

Valid to:
11/7/2016 6:06:38 AM

Subject:
CN=Click Start Media, O=Click Start Media, L=Oakland, S=California, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
008B1BC042761E6262

File PE Metadata
Compilation timestamp:
11/2/2014 7:20:03 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:MNkWzXQVT/kYeDR+n2vNzqQ9ZsPoS388YaRr1oIyle6oWE2KLYu64b531Sz:KcV1el+n2v78PbYirfpRUuDl1O

Entry address:
0x1DBB

Entry point:
E8, C0, C0, 00, 00, E9, E4, B8, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 3C, 51, 41, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 56, 8B, 74, 24, 08, 68, 00, 01, 00, 00, 6A, 01, 56, E8, 6C, B8, 00, 00, 33, C0, 89, 46, 21, 89, 46, 25, 89, 46, 29, 89, 46, 2D, 89, 46, 31, 89, 46, 35, 6A, 41, 89, 46, 39, 8D, 46, 3E, 6A, 00, 50, E8, 48, B8, 00, 00, 68, 00, 01, 00, 00, C6, 46, 09, 03, C6, 46, 20, 03, C6, 46, 0D, 02, 8B, 74, 24, 28, 68, FF, 00, 00, 00, 56, E8, 28, B8, 00, 00, B0, 0A, 88, 46, 41...
 
[+]

Entropy:
7.9820  (probably packed)

Code size:
54 KB (55,296 bytes)

Remove 76eddbc66bb66677aeb7b7586309475edcb52e95 - Powered by Reason Core Security