b48c6c0f5ae53094e2d1e2f3a0886d4aefca0751

Click Start Media

The file b48c6c0f5ae53094e2d1e2f3a0886d4aefca0751 by Click Start Media has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is installed within the Mozilla Firefox web browser as part of an addin/plugin.
Publisher:
Click Start Media  (signed and verified)

Product:
Click Start Media

Version:
15.7.1.8591

MD5:
6bdd971bfd69baa7b5d52df18004a3e6

SHA-1:
a19b4a36cd71a4d7736f556e20ee8c3fae567546

SHA-256:
3cf88d04b68ad552ab4172528aa6da57a9893460e21e13ba756878ce69490cfa

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/28/2024 3:12:35 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.ClickStartMedia.Installer (M)
16.1.17.18

File size:
1.2 MB (1,260,044 bytes)

Product version:
15.7.1.8591

Copyright:
Copyright (C) 2015

Original file name:
setup.exe

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\mozilla\firefox\profiles\{user}.default\cache2\entries\b48c6c0f5ae53094e2d1e2f3a0886d4aefca0751

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
11/6/2015 6:06:38 PM

Valid to:
11/6/2016 6:06:38 PM

Subject:
CN=Click Start Media, O=Click Start Media, L=Oakland, S=California, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
008B1BC042761E6262

File PE Metadata
Compilation timestamp:
11/1/2014 8:20:03 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:MNkWzXQVT/kYeDR+n2vNzqQ9ZsPoS388YaRr1oIyle6oWE2KLYu64b531Sf:KcV1el+n2v78PbYirfpRUuDl1q

Entry address:
0x1DBB

Entry point:
E8, C0, C0, 00, 00, E9, E4, B8, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 3C, 51, 41, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 56, 8B, 74, 24, 08, 68, 00, 01, 00, 00, 6A, 01, 56, E8, 6C, B8, 00, 00, 33, C0, 89, 46, 21, 89, 46, 25, 89, 46, 29, 89, 46, 2D, 89, 46, 31, 89, 46, 35, 6A, 41, 89, 46, 39, 8D, 46, 3E, 6A, 00, 50, E8, 48, B8, 00, 00, 68, 00, 01, 00, 00, C6, 46, 09, 03, C6, 46, 20, 03, C6, 46, 0D, 02, 8B, 74, 24, 28, 68, FF, 00, 00, 00, 56, E8, 28, B8, 00, 00, B0, 0A, 88, 46, 41...
 
[+]

Entropy:
7.9820  (probably packed)

Code size:
54 KB (55,296 bytes)

Remove b48c6c0f5ae53094e2d1e2f3a0886d4aefca0751 - Powered by Reason Core Security