boost.exe

Boost

Boost Shopping

The application boost.exe, “Boost is an application designed to help you compare products and prices while you shop online.” by Boost Shopping has been detected as adware by 2 anti-malware scanners.
Publisher:
Boost Shopping  (signed and verified)

Product:
Boost

Description:
Boost is an application designed to help you compare products and prices while you shop online.

Version:
4.0.3.5

MD5:
9eb0f7326a99ff862610ca81d8cce79e

SHA-1:
f168152ef2169703544b13138387bb9543e25635

SHA-256:
3666a49636e52475a37cd29c50469e0aff81bb4e670198d5089b2852cda1e8b8

Scanner detections:
2 / 68

Status:
Adware

Analysis date:
12/24/2024 11:09:30 AM UTC  (today)

Scan engine
Detection
Engine version

Malwarebytes
PUP.Optional.Boost.A
v2015.05.27.11

Reason Heuristics
PUP.BoostShopping
15.5.27.11

File size:
426.4 KB (436,624 bytes)

Product version:
4.0.3.5

Copyright:
(C) 2014 Boost Shopping. All right reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\boost\boost.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
5/13/2015 2:00:00 AM

Valid to:
8/12/2016 1:59:59 AM

Subject:
CN=Boost Shopping, O=Boost Shopping, L=Bellevue, S=Washington, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
56BE18B038839D1B74FAC83C3F051C21

File PE Metadata
Compilation timestamp:
5/26/2015 9:23:53 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
6144:Y6R8TiPBeVCZ+RuHvEqWY/LOAadEAODAOgnkw9e/hwBM:HpeVA+oEY/LudEhiNe/hw2

Entry address:
0x16343

Entry point:
E8, BE, 95, 00, 00, E9, 7F, FE, FF, FF, E8, 4F, 14, 00, 00, 85, C0, 75, 06, B8, CC, D2, 45, 00, C3, 83, C0, 0C, C3, 55, 8B, EC, 56, E8, E4, FF, FF, FF, 8B, 4D, 08, 51, 89, 08, E8, 20, 00, 00, 00, 59, 8B, F0, E8, 05, 00, 00, 00, 89, 30, 5E, 5D, C3, E8, 1B, 14, 00, 00, 85, C0, 75, 06, B8, C8, D2, 45, 00, C3, 83, C0, 08, C3, 55, 8B, EC, 8B, 4D, 08, 33, C0, 3B, 0C, C5, 60, D1, 45, 00, 74, 27, 40, 83, F8, 2D, 72, F1, 8D, 41, ED, 83, F8, 11, 77, 05, 6A, 0D, 58, 5D, C3, 8D, 81, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8...
 
[+]

Code size:
263 KB (269,312 bytes)

Remove boost.exe - Powered by Reason Core Security