compete.exe

Compete Inc

The application compete.exe by Compete Inc has been detected as a potentially unwanted program by 4 anti-malware scanners. The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. It is also typically executed from the user's temporary directory. The file has been seen being downloaded from fastc.us and multiple other hosts.
Publisher:
Compete Inc  (signed and verified)

Version:
3.2.4.4297

MD5:
7483729ead65ee73e9e5784c0cd310b5

SHA-1:
3955e8b830697bc38801c69fbf6e200bf1277efc

SHA-256:
92ba7e0344c01943b8263416238ccd74a5f1428854a5ce958b7779d96ff46ff3

Scanner detections:
4 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 10:57:31 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Adware.Compete.1
9.0.1.05190

ESET NOD32
Win32/Compete.C potentially unwanted application
8.0.319.0

F-Secure
Variant.Adware.Goopdate
5.15.96

Reason Heuristics
PUP.Compete.Installer (M)
16.4.28.20

File size:
1.8 MB (1,918,232 bytes)

Product version:
3.2.4.4297

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\compete.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
12/21/2014 5:00:00 PM

Valid to:
3/22/2018 5:59:59 PM

Subject:
CN=Compete Inc, O=Compete Inc, L=Boston, S=Massachusetts, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
0A6DDD60D9E6C4FAA56565923F8669C2

File PE Metadata
Compilation timestamp:
9/26/2011 7:21:38 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:i6Cy4pPValzJaKHUoSFzBhig4bFo0rFF8feS/CCkTZnhVIH5oKCDdbyukoMJxVt+:14pPYdSZig45NQeSqbRhK0SoSr0

Entry address:
0x38AF

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, 68, A2, 40, 00, 89, 6C, 24, 14, FF, 15, 30, 90, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 90, 40, 00, 55, FF, 15, C0, 92, 40, 00, 6A, 08, A3, 98, EB, 47, 00, E8, 36, 2A, 00, 00, 55, 68, B4, 02, 00, 00, A3, B0, EA, 47, 00, 8D, 44, 24, 38, 50, 55, 68, 64, A2, 40, 00, FF, 15, 84, 91, 40, 00, 68, 4C, A2, 40, 00, 68, A0, 6A, 47, 00, E8, 18, 27, 00, 00, FF, 15, B0, 90, 40, 00, 50, BF, A0, F0, 4C, 00, 57, E8, 06, 27, 00, 00...
 
[+]

Entropy:
7.9849

Packer / compiler:
Nullsoft install system v2.x

Code size:
29 KB (29,696 bytes)

The file compete.exe has been seen being distributed by the following 2 URLs.

Remove compete.exe - Powered by Reason Core Security