bitzipper.exe

BitZipper

Bitberry Software

The application bitzipper.exe, “BitZipper - File compression tool” by Bitberry Software has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Bitberry Software  (signed and verified)

Product:
BitZipper

Description:
BitZipper - File compression tool

Version:
5.0.1.0

MD5:
68a9ed8664705a4930d1251a2fab0179

SHA-1:
493c21f04d630bba4a9d802c86a002a8c65ee3f5

SHA-256:
80262ad857b4ef20097c0772bf91f9b735d8b6d9aafeac117dc653e9d93a892e

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/15/2024 2:32:59 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Bitberry (M)
16.8.5.15

File size:
2.7 MB (2,844,832 bytes)

Product version:
5.0.1

Copyright:
(C) 1999-2007 Bitberry Software

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\bitzipper\bitzipper.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
10/2/2006 2:00:00 AM

Valid to:
10/3/2007 1:59:59 AM

Subject:
CN=Bitberry Software, O=Bitberry Software, STREET=Blomsterhaven 42, L=Holbaek, S=N/A, PostalCode=4300, C=DK

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0EF97294ACFF22AC0960E92EA0606C88

File PE Metadata
Compilation timestamp:
5/17/2007 11:05:00 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:DjdHSWXLTVp+kuOA+nKeXPg+cGSUEZ9JApv6QSmf3DQnABf6F2+4CnnAGWhadGE:3d9Tbw72KKo+cGu9uVE1Bnn6gdGE

Entry address:
0x1000

Entry point:
68, 01, F0, B2, 00, E8, 01, 00, 00, 00, C3, C3, 21, 41, 8A, 11, 9D, 62, C0, CE, F3, 99, 84, 9A, 24, 7D, 5A, A3, 5F, 9B, 9E, FD, 0A, A8, 4F, D9, E9, A7, 30, C1, 29, F1, C4, 16, 50, E2, C3, 2F, 68, DA, 9C, 1C, B1, 7D, C7, 7A, 23, 80, 82, 23, 74, 67, 31, C0, E8, 87, 57, D9, 18, E3, E6, 48, 90, 2F, 6E, 8B, F7, 93, C9, E1, 94, 8F, 75, A0, 7E, 0B, 4C, 33, 3D, 8C, 98, 3C, A5, 5F, 78, D3, 24, 96, 45, A8, 59, 2B, 71, FC, BE, 38, 28, 8E, 53, 3E, 32, 9D, A7, 48, 91, 07, AA, AA, 51, 05, BF, CE, 6A, 27, 23, 8B, CC, D3...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
4.4 MB (4,599,808 bytes)

Remove bitzipper.exe - Powered by Reason Core Security