Adware-Removal-Tool-v3.9.exe

Adware-Removal-Tool-v3.9.1

Pawan Kumar

This is a setup program which is used to install the application. The file has been seen being downloaded from dw.html.it and multiple other hosts.
Publisher:
Pawan Kumar  (signed and verified)

Product:
Adware-Removal-Tool-v3.9.1

Version:
3.9.0.0

MD5:
a45721f5afb6e49b9fec5805cd1b643c

SHA-1:
d46f13f73326118141bf868bea0f683f4bec2d9f

SHA-256:
eeb9d49560e2056ba83594ec2329a18a3902c7e13c75e41aeebb61d7f5c159ab

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/24/2024 12:16:24 PM UTC  (today)

File size:
735.5 KB (753,184 bytes)

Product version:
3.9.0.0

Copyright:
Copyright © 2014

Original file name:
Adware-Removal-Tool-v3.9.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\adware-removal-tool-v3.9.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
9/18/2013 2:00:00 AM

Valid to:
9/19/2014 1:59:59 AM

Subject:
CN=Pawan Kumar, OU=Technical, O=Pawan Kumar, STREET=H NO 453/19 kailash Colony, STREET=Shanti vihar Near ITI Sonipat, L=Sonipat, S=Haryana, PostalCode=13001, C=IN

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00951CEEE7778B5AC58E995E728FAC7456

File PE Metadata
Compilation timestamp:
6/28/2014 12:03:11 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:W5LV4IKLVfhLVh0/56+Aq4WBTWpSqXhpeEioU2Uh08LVQLV/UqzizLLV4AK:WZrxONXiEiJ2pUSaPK

Entry address:
0xAF58E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, DF, 92, AE, 53, 00, 00, 00, 00, 02, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
693.5 KB (710,144 bytes)

The file Adware-Removal-Tool-v3.9.exe has been discovered within the following program.

QuickTime 7  by Apple Inc.
Publisher's description - “QuickTime Player 7 supports older media formats, such as QTVR, interactive QuickTime movies, and MIDI files on Snow Leopard and OS X Lion. It also accepts QuickTime 7 Pro registration codes, which turn on QuickTime Pro functions.”
www.apple.com
10% remove it
 
Powered by Should I Remove It?

The file Adware-Removal-Tool-v3.9.exe has been seen being distributed by the following 50 URLs.

http://dw.html.it/index.php?softname=Adware-Removal-Tool-v3.9.1.exe&code=1434376875&q=NzM4Nzd8YWR3YXJlLXJlbW92ZXItdG9vbC0z

http://download.findmysoft.com/2015/02/.../Adware-Removal-Tool_3.9.1.exe

http://ftp-stahuj.centrum.cz/dl/c392eb8dfd309de3027c2a5b9f8f4b2c/584555df/stahuj/download/software/secured/a/adware-removal-tool/.../Adware-Removal-Tool.exe

http://share2.earthlinktele.com/download.aspx?file=287958112&sig=MTQvMDMvMjAxNiAxNDoyNjoyOA==

http://download1147.mediafire.com/k8sk4r068azg/.../Adware-Removal-Tool-v3.9.1.exe

http://www.adwareremovaltool.org/.../Adware-Removal-Tool-v3.9.exe

http://ftp-stahuj.centrum.cz/dl/e61089354e42426c5570428c773dbe21/5717327c/stahuj/download/software/secured/a/adware-removal-tool/.../Adware-Removal-Tool.exe

http://192.168.1.2/.../Adware-Removal-Tool-v3.9.1.exe

Latest 30 of 60 download URLs

Scan Adware-Removal-Tool-v3.9.exe - Powered by Reason Core Security