b1freearchiver_1.0.37.exe

B1 Free Archiver Installer

Catalina Group Limited

The application b1freearchiver_1.0.37.exe by Catalina Group Limited has been detected as a potentially unwanted program by 3 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. This file is typically installed with the program B1 Free Archiver by Catalina Group Ltd.. The file has been seen being downloaded from b1.org and multiple other hosts.
Publisher:
Catalina Group Limited  (signed and verified)

Product:
B1 Free Archiver Installer

Version:
1, 1, 0, 0

MD5:
f0b38c10d2e07545d5104687304fd4d7

SHA-1:
08701122782ef8dd70715de3ef967db851c0065d

SHA-256:
1478b53d39993ce823437f4cdc556fb3e8a060afd39158bc449fe8912f4dafac

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 6:33:34 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Installer.CatalinaGroupLimited.T
15.1.8.18

Rising Antivirus
PE:PUF.4Shared!1.9C25
23.00.65.15106

Trend Micro House Call
TROJ_GEN.F47V0926
7.2.8

File size:
1.7 MB (1,789,288 bytes)

Product version:
1, 1, 0, 0

Copyright:
Copyright (C) 2013

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\b1freearchiver_1.0.37.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
9/26/2012 9:56:54 PM

Valid to:
9/26/2013 9:56:54 PM

Subject:
CN=Catalina Group Limited, O=Catalina Group Limited, L=Kwun Tong, S=Hong Kong, C=HK

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
27B940A1704DC9

File PE Metadata
Compilation timestamp:
3/12/2013 10:22:26 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:NNtlcTBq3TzL7vjE60brTmkyG7awtEZh7euaEyNwRj+X/dWK5c5aOkwXp06n246c:ftlcTBq3jMrwG7awtEZh7euaEyNwRj+E

Entry address:
0x2183C

Entry point:
E8, E7, 9E, 00, 00, E9, 79, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B, 4C, 24, 04, 2B, C1...
 
[+]

Entropy:
7.2876

Code size:
222 KB (227,328 bytes)

The file b1freearchiver_1.0.37.exe has been discovered within the following program.

B1 Free Archiver  by Catalina Group Ltd.
Publisher's description - “B1 archive is an open archive format, where best proven solutions were improved even more with new original ideas. It's free and available for both personal and commercial use. B1 Archiver is extremely simple to use, you don't need comprehensive manuals or guides.”
b1.org
45% remove it
 
Powered by Should I Remove It?

The file b1freearchiver_1.0.37.exe has been seen being distributed by the following 2 URLs.

Remove b1freearchiver_1.0.37.exe - Powered by Reason Core Security