AdMunch.exe

Ad Muncher

Murray Hurps Software Pty Ltd

This is a setup program which is used to install the application. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Ad Muncher’.
Publisher:
Murray Hurps Software Pty Ltd  (signed and verified)

Product:
Ad Muncher

Version:
4.94.34121 (Free)

MD5:
edd15222718345def9f12336ba2405d1

SHA-1:
0e98493b4b34ed7665c98d29abdd2053f42e6063

SHA-256:
23267a37b7e58cea5a30bb7b0e217bf4846b07e63fceef404fca66c48a21ffc6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/22/2024 10:46:36 PM UTC  (today)

File size:
547.6 KB (560,760 bytes)

Product version:
4.94.34121 (Free)

Copyright:
Copyright © Murray Hurps Software Pty Ltd

Original file name:
AdMunch.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\ad muncher\admunch.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
10/13/2014 5:25:47 AM

Valid to:
10/13/2015 5:25:47 AM

Subject:
CN=Murray Hurps Software Pty Ltd, O=Murray Hurps Software Pty Ltd, L=Box Hill, S=New South Wales, C=AU

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
00C1A391D64C66

File PE Metadata
Compilation timestamp:
12/7/2026 6:34:11 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:DGTL2veTIH7KaEV+QRYgrbMN4w9MEdcjhVNUmdH2OMQUptwkoSS:DGFT8S+ErbM99MdjlUmHM3w3

Entry address:
0x6B3190

Entry point:
60, BE, 00, 20, A3, 00, 8D, BE, 00, F0, 9C, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, 43, 12, 6B, 00, 57, 83, C3, 04, 53, 68, 8E, 11, 08, 00, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 02, 00, 90, 90, 90, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9, 49, 89, 4C, 24, 6C, 0F, B6, 4A...
 
[+]

Code size:
520 KB (532,480 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Ad Muncher

Command:
"C:\Program Files\ad muncher\admunch.exe" \bt


The file AdMunch.exe has been discovered within the following program.

About 6% of users remove it
 
Powered by Should I Remove It?

The file AdMunch.exe has been seen being distributed by the following 45 URLs.

&onid=7786&oid=3001-7786_4-10130181&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=security/popup-blocker&topicbrcrm=&pid=13842020&mfgid=105815&merid=105815&ctype=dm&cval=NONE&devicetype=<!--esidesktop&pguid=eebaf162a36188c203b15a5c&viewguid=g7IN9Z1gel-f5hmnHHXUl1-iyOy2MjtmQteH&destUrl=http://files.downloadnow.com/s/software/13/84/.../20/AM-Install.exe

http://soft.mydiv.net/win/dlfilea8b29_261897/.../AM-Install.exe

http://dl.xetapp.com/downloads/software/internet/.../ad.muncher.exe

http://descargar.freedownloadmanager.org/Windows-PC/.../GRATIS-4.94.34121.html?ac2ed6c

http://www.tamindir.com/indir/MjAxNi0wOC0yMSAxNToyODoyMg==/ad-muncher/windows/.../

http://soft.mydiv.net/win/dlfilebde14_261897/.../AM-Install.exe

https://ad-muncher.softonic.com/download-tracker?th=8yS3 KGEYLiw7GKMHzA/.../4Js4FYEAC4g6CP9yJiPtKpzSK0WuesgwKdeY=

http://www.afterdawn.com/software/.../download.cfm?version_id=89673&software_id=994&mirror_id=0&installer=0&perion=0&air_installer=0

http://cdn.soft-download.ru/?s=vzR4WBzITe8mEK_7B0ALsA&pf=AdMuncher_Setup.exe&pt=Ad Muncher ??? Windows&src=softcatalog.info

http://soft.mydiv.net/win/dlfile10ee7_261897/.../AM-Install.exe

https://www.admuncher.com/cgi-bin/.../AM-Install.exe

http://soft-file.ru//http://www.admuncher.com/cgi-bin/.../AM-Install.exe

http://cdn.soft-download.ru/?s=Gygpe8k_ydVnTrDVC8GdnA&pf=AdMuncher_Setup.exe&pt=Ad Muncher ??? Windows&src=softcatalog.info

Latest 30 of 45 download URLs

Scan AdMunch.exe - Powered by Reason Core Security