arturia v2 analog synth collection au rtas vst hybrid win osx incl keygens air zip__3039_i1316271931

Ukra-2006 LLC

This is the Amonetize download manager which bundles applications with offers for additional 3rd party software, mostly unwanted adware, and may be installed with minimal consent. The file arturia v2 analog synth collection au rtas vst hybrid win osx incl keygens air zip__3039_i1316271931 by Ukra-2006 has been detected as adware by 10 anti-malware scanners. The program is a setup application that uses the Amonetize Downloader installer. The setup program bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install.
Publisher:
Ukra-2006 LLC  (signed and verified)

Version:
1.1.8.22

MD5:
3460f04ce02cc1cea122b120b05da9a2

SHA-1:
d6a67d2d8ea45cb7118369c1280daa776415d54a

SHA-256:
d9b5261c0c22d6669eff99fdd9cdb0f78b766721b3f0fabcd57e60d49d1b3dd9

Scanner detections:
10 / 68

Status:
Adware

Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.

Analysis date:
12/25/2024 12:31:57 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
PUA.Amonetize
7.1.1

AhnLab V3 Security
PUP/Win32.Amonetize
2014.09.17

Avira AntiVirus
ADWARE/Adware.Gen
7.11.172.168

AVG
Ukra
2015.0.3343

Baidu Antivirus
Adware.Win32.Amonetize
4.0.3.14923

ESET NOD32
Win32/Amonetize.BO (variant)
8.10428

Malwarebytes
PUP.Optional.Amonetize
v2014.09.23.06

McAfee
Artemis!3460F04CE02C
5600.6999

Reason Heuristics
PUP.Installer.Ukra2006.AA
14.9.23.6

Sophos
Amonetize
4.98

File size:
404.7 KB (414,416 bytes)

Product version:
1.1.8.22

Original file name:
setup.exe

Bundler/Installer:
Amonetize Downloader

Language:
English (United States)

Common path:
C:\users\{user}\downloads\arturia v2 analog synth collection au rtas vst hybrid win osx incl keygens air zip__3039_i1316271931_il947097.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
6/30/2014 8:00:00 PM

Valid to:
7/1/2015 7:59:59 PM

Subject:
CN=Ukra-2006 LLC, O=Ukra-2006 LLC, L=Kharkiv, S=Harkivska obl, C=UA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2B3200D1AF3CAC4253C00F000EF4BAB9

File PE Metadata
Compilation timestamp:
9/10/2014 10:59:43 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:2a5Mqqub6lskGCEurlTA2xhDUy/WsOwYvMslCNLAdIe58gAbKf2z2m:XMqp6ikqgRpxhliMsExAC5bc2zz

Entry address:
0x17610

Entry point:
E8, 8B, 84, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, 3D, 94, AF, 3C, 00, 00, 75, 18, E8, A9, 7D, 00, 00, 6A, 1E, E8, F3, 7B, 00, 00, 68, FF, 00, 00, 00, E8, C3, F4, FF, FF, 59, 59, 8B, 45, 08, 85, C0, 75, 01, 40, 50, 6A, 00, FF, 35, 94, AF, 3C, 00, FF, 15, 60, 21, 3C, 00, 5D, C3, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 83, FB, E0, 77, 6F, 56, 57, 83, 3D, 94, AF, 3C, 00, 00, 75, 18, E8, 5F, 7D, 00, 00, 6A, 1E, E8, A9, 7B, 00, 00, 68, FF, 00, 00, 00, E8, 79, F4, FF, FF, 59, 59, 85, DB, 74, 04, 8B, C3...
 
[+]

Entropy:
7.2770

Code size:
192.5 KB (197,120 bytes)

The file arturia v2 analog synth collection au rtas vst hybrid win osx incl keygens air zip__3039_i1316271931 has been seen being distributed by the following URL.