csauie1.OCX

csauie1 ActiveX Control Module

Coupons, Inc.

The file csauie1.OCX by Coupons has been detected as a potentially unwanted program by 16 anti-malware scanners.
Publisher:
Coupons Inc.  (signed by Coupons, Inc.)

Product:
csauie1 ActiveX Control Module

Version:
3, 2, 0, 1

MD5:
3f6fba0c3f30c5d9339f7da1db1e71e3

SHA-1:
bc12ab953286d306b10f1ac5a0d28fe75634884f

Scanner detections:
16 / 68

Status:
Potentially unwanted

Analysis date:
11/16/2024 11:46:49 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Adware/Win32.Coupons
2011.01.27

Avira AntiVirus
ADSPY/Coupons.U
7.11.2.59

avast!
Win32:PUP-gen
2014.9-150819

AVG
Generic4
2016.0.3013

Comodo Security
UnclassifiedMalware
7571

Emsisoft Anti-Malware
Signed-Adware!IK
8.15.08.19.08

ESET NOD32
Win32/Agent.EBBYIBO (variant)
9.5841

IKARUS anti.virus
Signed-Adware
t3scan.1.1.97.0

K7 AntiVirus
Adware
13.81.3725

Kaspersky
not-a-virus:AdWare.Win32.Coupons
14.0.0.1558

McAfee
Generic PUP.x
5600.6669

Norman
W32/Coupons.V
11.20150819

nProtect
Trojan-Clicker/W32.Coupons.101472
11.01.27.01

Quick Heal
AdWare.Coupons.u (Not a Virus)
8.15.11.00

Reason Heuristics
PUP.Coupons (M)
15.8.19.8

ViRobot
Adware.Coupons.101472
2011.2.2.4288

File size:
99.1 KB (101,472 bytes)

Product version:
3, 2, 0, 1

Copyright:
Copyright (C) 1999-2004, Coupons Inc.

Original file name:
csauie1.OCX

File type:
OLE control extension (Win32 OCX)

Language:
English (United States)

Common path:
C:\windows\csauie1.ocx

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/20/2004 1:00:00 AM

Valid to:
10/15/2005 12:59:59 AM

Subject:
CN="Coupons, Inc.", OU=Coupons.com, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Coupons, Inc.", L=Palo Alto, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2001 CA, OU=Terms of use at https://www.verisign.com/rpa (c)01, OU=VeriSign Trust Network, O="VeriSign, Inc."

Serial number:
194105CE42315686A84C6F7BEB268217

Registration
CLSID:
{3B5E9B23-7537-4601-A9E8-FA0D956DEA16}

ProgID:
csauie1.Coupon6Ctrl.1

COM registered:
Yes

File PE Metadata
Compilation timestamp:
2/8/2005 2:13:21 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
1536:vsS5yK3DjExblRTWIecvakZCVsQ4kZ/gKVJW4LxGGDlnxQr+vUOf7Dp0:7kK/ilBpOZ/XV9tDDRxM9Of7Dm

Entry address:
0xE850

Entry point:
53, 55, 56, 8B, 74, 24, 14, 85, F6, 57, B8, 01, 00, 00, 00, 75, 13, 8B, 0D, 2C, 66, 01, 10, 85, C9, 75, 09, 33, C0, 5F, 5E, 5D, 5B, C2, 0C, 00, 8B, 7C, 24, 1C, 8B, 5C, 24, 14, 83, FE, 01, 74, 05, 83, FE, 02, 75, 28, 8B, 0D, 58, 53, 01, 10, 85, C9, 74, 05, 57, 56, 53, FF, D1, 85, C0, 74, 0C, 57, 56, 53, E8, DF, FE, FF, FF, 85, C0, 75, 09, 33, C0, 5F, 5E, 5D, 5B, C2, 0C, 00, 57, 56, 53, E8, AB, FA, FF, FF, 83, FE, 01, 8B, E8, 75, 0C, 85, ED, 75, 08, 57, 50, 53, E8, B7, FE, FF, FF, 85, F6, 74, 05, 83, FE, 03...
 
[+]

Entropy:
6.5399

Developed / compiled with:
Microsoft Visual C++

Code size:
58.5 KB (59,904 bytes)

Safe for Initializing Control
CLSID:
{3B5E9B23-7537-4601-A9E8-FA0D956DEA16}

CLSID name:
csauie1 Control


Remove csauie1.OCX - Powered by Reason Core Security