c-media-ac97-audio-device_41980.exe

Downloader

DownloadAtoZ

The application c-media-ac97-audio-device_41980.exe has been detected as a potentially unwanted program by 6 anti-malware scanners. The file has been seen being downloaded from drivers.downloadatoz.com and multiple other hosts.
Publisher:
DownloadAtoZ

Product:
Downloader

Version:
1.0.0.1

MD5:
36e884e78d01f7ff0e12efae0edbe76d

SHA-1:
bb5d781d2d50b07baebf83879a11e7b124f96b86

SHA-256:
4a01104d141854a8d6aa07b1c2ccd5950a11302148de905dd685d463b399cabc

Scanner detections:
6 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 8:39:02 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.HDC
2015.01.04

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.8.5.0

McAfee
Artemis!36E884E78D01
5600.6896

Norman
Suspicious_Gen5.BAHQA
11.20150103

Reason Heuristics
PUP.DownloadAtoZ.Bundler.Meta (M)
15.6.19.11

Trend Micro House Call
TROJ_GEN.R0C1H09LH14
7.2.3

File size:
3 MB (3,173,376 bytes)

Product version:
1.0.0.1

Copyright:
DownloadAtoZ All rights reserved.

Original file name:
Downloader.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\c-media-ac97-audio-device_41980.exe

File PE Metadata
Compilation timestamp:
12/16/2014 10:18:18 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:w9/pAuATtD/6GFOpiGkN6x5Yc1aReNIwXoyVguKw96+kaCr2JeLpg+E+3sTscLwL:gpAuY5nFj6bcCPqxrsB+7secsfZj

Entry address:
0x13CF70

Entry point:
8B, FF, 55, 8B, EC, E8, 56, 35, 01, 00, E8, 11, 00, 00, 00, 5D, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 6A, FE, 68, 80, 66, 60, 00, 68, E0, 6F, 54, 00, 64, A1, 00, 00, 00, 00, 50, 83, C4, 94, 53, 56, 57, A1, E0, 02, 61, 00, 31, 45, F8, 33, C5, 50, 8D, 45, F0, 64, A3, 00, 00, 00, 00, 89, 65, E8, C7, 45, 90, 00, 00, 00, 00, C7, 45, FC, 00, 00, 00, 00, 8D, 45, A0, 50, FF, 15, AC, 84, 5B, 00, C7, 45, FC, FE, FF, FF, FF, EB, 26, B8, 01, 00, 00, 00, C3, 8B, 65, E8, C7...
 
[+]

Entropy:
5.8672

Code size:
1.7 MB (1,795,072 bytes)

The file c-media-ac97-audio-device_41980.exe has been seen being distributed by the following 37 URLs.

http://drivers.downloadatoz.com/download/.../brother-mfc-7450-driver-01-00-01-02-for-windows-xp-x32-windows-vista-x32-windows-7-x32-downloader.exe

http://drivers.downloadatoz.com/download/.../rt73-usb-wireless-lan-card-driver-downloader.exe

http://drivers.downloadatoz.com/download/.../gateway-dx4300-desktop-series-amd-rs780-rs740-sb700-chipset-driver-downloader.exe

http://drivers.downloadatoz.com/download/.../hama-wds-300-usb-weather-data-station-driver-1-0-5-for-windows-2000-windows-xp-windows-vista-downloader.exe

http://drivers.downloadatoz.com/download/.../datacard-sp55-driver-10-0-for-windows-vista-x64-windows-2008-64-bit-windows-7-64-bit-downloader.exe

http://drivers.downloadatoz.com/download/.../hp-deskjet-f380-all-in-one-print-and-scan-driver-downloader.exe

http://drivers.downloadatoz.com/download/.../epson-fx-2180-driver-6-0-6000-16386-for-windows-xp-x64-windows-vista-x64-windows-7-x64-downloader.exe

http://drivers.downloadatoz.com/download/.../dell-vostro-desktop-230-broadcom-57xx-gigabit-driver-downloader.exe

http://drivers.downloadatoz.com/download/.../3com-officeconnect-3crwe454g72-wireless-11g-access-point-firmware-downloader.exe

http://drivers.downloadatoz.com/download/.../nokia-6300-usb-driver-downloader.exe

http://drivers.downloadatoz.com/download/.../amd-ahci-driver-11-11-for-windows-7-downloader.exe

http://drivers.downloadatoz.com/download/.../hp-deskjet-3900-series-driver-downloader.exe

Latest 30 of 37 download URLs

Remove c-media-ac97-audio-device_41980.exe - Powered by Reason Core Security