java_installer.exe

The application java_installer.exe has been detected as a potentially unwanted program by 5 anti-malware scanners. The file has been seen being downloaded from trackplace.net.
MD5:
bcfd811af19a704bae889d05e1a026f6

SHA-1:
6602b1a23402264cc44add6513aa9909fff7025d

SHA-256:
910ea0e02db92e2bd364e60dd1b8ec56fb1784b3d13a64e6dd64fc1a6e3d1322

Scanner detections:
5 / 68

Status:
Potentially unwanted

Analysis date:
1/4/2025 9:20:55 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Adware BundleApp_r.N
2015.0.4530

Dr.Web
Adware.Downware.5930
9.0.1.05190

Microsoft Security Essentials
Threat.Undefined
1.215.1444.0

Reason Heuristics
Adware.Bundler (M)
16.3.14.8

File size:
932 KB (954,356 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\java_installer.exe

File PE Metadata
Compilation timestamp:
7/7/2014 4:17:49 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:5N5sIol+C+AzXo0vGFJNArJXI9jZ3+U6uC3UAVSVPCIl:H5sCAKBZau+KCIl

Entry address:
0x85ABF

Entry point:
8B, FF, 55, 8B, EC, 56, 8B, 75, 08, 57, 56, E8, F1, EA, FF, FF, 59, 83, F8, FF, 74, 50, A1, 40, 9D, 4C, 00, 83, FE, 01, 75, 09, F6, 80, 84, 00, 00, 00, 01, 75, 0B, 83, FE, 02, 75, 1C, F6, 40, 44, 01, 74, 16, 6A, 02, E8, C6, EA, FF, FF, 6A, 01, 8B, F8, E8, BD, EA, FF, FF, 59, 59, 3B, C7, 74, 1C, 56, E8, B1, EA, FF, FF, 59, 50, FF, 15, D8, 31, 4A, 00, 85, C0, 75, 0A, FF, 15, F4, 31, 4A, 00, 8B, F8, EB, 02, 33, FF, 56, E8, 0D, EA, FF, FF, 8B, C6, C1, F8, 05, 8B, 04, 85, 40, 9D, 4C, 00, 83, E6, 1F, C1, E6, 06...
 
[+]

Entropy:
6.6939

Code size:
645 KB (660,480 bytes)

The file java_installer.exe has been seen being distributed by the following URL.

Remove java_installer.exe - Powered by Reason Core Security