att i747ucalg1 i747attlg1.zip_10924_i45772988_il345.exe

Runner Utility

BERSHNET LLC

The application att i747ucalg1 i747attlg1.zip_10924_i45772988_il345.exe by BERSHNET has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Dummy, Ltd.  (signed by BERSHNET LLC)

Product:
Runner Utility

Version:
1.0.0.187

MD5:
a3b2c4e012dd34d56cdaf113b37df304

SHA-1:
98830a346d3f16a67761269374f502620e879b23

SHA-256:
a37c23b4a8731f77af6b89978703b30fc036d8f62dfe154e741d9b4623217fce

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/23/2024 7:10:27 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Amonitize (M)
17.3.16.4

File size:
1.5 MB (1,568,784 bytes)

Product version:
1.0.0.187

Copyright:
Copyright (C) 2013

Original file name:
runner.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\att i747ucalg1 i747attlg1.zip_10924_i45772988_il345.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/5/2015 6:00:00 PM

Valid to:
2/6/2016 5:59:59 PM

Subject:
CN=BERSHNET LLC, O=BERSHNET LLC, STREET="st. 600-richya b.66, of.10", L=Vinnitsya, S=Vinnitskaya, PostalCode=21027, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00E2D6C6F8DDF832E09DCF766B299AD2A9

File PE Metadata
Compilation timestamp:
3/21/2015 8:33:11 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x27D2B1

Entry point:
E8, 84, 5E, 0F, 00, 88, 14, 24, 8A, 04, 38, E8, 74, ED, 0E, 00, 88, 0C, 24, 89, 18, 8D, 64, 24, 04, 0F, 8A, E8, 9B, 0E, 00, 9C, 68, DC, E8, 2E, FC, 88, 2C, 24, 87, 44, 24, 04, E9, F2, 74, 00, 00, 52, FF, 34, 24, 66, C7, 04, 24, 66, CC, C7, 44, 24, 04, 71, 85, 4E, D4, 51, 60, 89, 6C, 24, 04, C7, 44, 24, 08, C7, C3, FE, EF, 8D, 64, 24, 28, E9, FF, 96, 17, 00, D1, 80, 21, BE, 57, 24, 64, D9, 3D, EC, 3D, D3, F3, FC, 36, 6A, 0F, AC, FA, 81, 34, CA, 5B, F8, 6A, F1, 57, FE, BD, 73, A9, 30, E1, AE, 04, AB, 4C, 19...
 
[+]

Code size:
187.5 KB (192,000 bytes)