adwcleaner_3.304.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from download.bleepingcomputer.com and multiple other hosts.
Version:
3.3.0.4

MD5:
9d46d72131d0e36a79d4819f08ea0e0b

SHA-1:
70a2a8fa0f9cfaab32951f871f8d08cba3a64e02

SHA-256:
18f1be8a2e9680f255ecde64f31c97926f0686a09eb76d50fd600eb47f17f8b1

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/26/2024 8:43:36 AM UTC  (today)

Scan engine
Detection
Engine version

Qihoo 360 Security
Malware.QVM11.Gen
1.0.0.1015

File size:
1.3 MB (1,366,203 bytes)

Product version:
3.3.8.1

File type:
Executable application (Win32 EXE)

Language:
Fransk (Frankrike)

Common path:
C:\users\{user}\downloads\adwcleaner_3.304.exe

File PE Metadata
Compilation timestamp:
1/29/2012 10:32:28 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:XthEVaPqLG2dw5qTE/26Q0FN+D0KCBRomrTR6L+5YKtEyNBGws7GkyI/X:bEVUcGlqQ7EoTjTRIKtEy8q8

Entry address:
0xC4E80

Entry point:
60, BE, 00, 30, 48, 00, 8D, BE, 00, E0, F7, FF, 57, EB, 0B, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89, C5, EB, 0B, 01, DB, 75, 07, 8B...
 
[+]

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.24

Code size:
268 KB (274,432 bytes)

The file adwcleaner_3.304.exe has been discovered within the following program.

Gmail Notifier Pro  by IntelliBreeze Software
Publisher's description - “Gmail Notifier Pro is a Windows application capable of checking multiple Google Gmail accounts for new mail and display notifications. Google Calendar, Google Reader, Google News, Google Drive, Google+, Facebook, Twitter, Microsoft SkyDrive and RSS/Atom feeds are also supported.”
www.gmailnotifier.se
About 6% of users remove it
 
Powered by Should I Remove It?

The file adwcleaner_3.304.exe has been seen being distributed by the following 50 URLs.

http://download.bleepingcomputer.com/dl/a9ba9ffa9ac8ac62e4a9d428f0846360/53e8eb17/windows/security/security-utilities/a/.../AdwCleaner.exe

https://toolslib.net/downloads/finish/1/get/.../

https://toolslib.net/downloads/finish/1/get/.../

https://toolslib.net/downloads/finish/1/get/.../

http://download.bleepingcomputer.com/dl/7d837d455e491fe78135506d021c677f/53e96114/windows/security/security-utilities/a/.../AdwCleaner.exe

https://toolslib.net/downloads/finish/1/get/.../

https://toolslib.net/downloads/finish/1/get/.../

http://dw2.fr.uptodown.com/dl/1408379126/.../adwcleaner-3-304-multi-win.exe

http://download.bleepingcomputer.com/dl/45e87150bb83dd980d5e6b7e2410beae/53ebd9da/windows/security/security-utilities/a/.../AdwCleaner.exe

http://lb.cdn.m6web.fr/d/c/a/88ea4b41aafe26400d6e424091f04d59/53eb5ec9/soft/.../adwcleaner_3-304_fr_430277.exe

http://download.bleepingcomputer.com/dl/ace96c28116e1ecdb2ff4e36a1f9d00e/53ebbed9/windows/security/security-utilities/a/.../AdwCleaner.exe

http://download.bleepingcomputer.com/dl/f62e501cdf55c85820d4a7f43207d38d/53e786e1/windows/security/security-utilities/a/.../AdwCleaner.exe

http://download.bleepingcomputer.com/dl/6d0e1dd2a7eb7e5d52e60691e2b03b4c/53ea254e/windows/security/security-utilities/a/.../AdwCleaner.exe

https://toolslib.net/downloads/finish/1/get/.../

https://toolslib.net/downloads/finish/1/get/.../

https://toolslib.net/downloads/finish/1/get/.../

http://download.bleepingcomputer.com/dl/41956334b716d95b3bed0ab34c81cb2f/53eb2afb/windows/security/security-utilities/a/.../AdwCleaner.exe

Latest 30 of 249 download URLs

Scan adwcleaner_3.304.exe - Powered by Reason Core Security