java_runtime_enviroment_setup.exe.exe
Tiki Taka
This is the OutBrowse Revenyou installer which bundles offers for additional third party applications that may be unwanted and installed without consent. The application java_runtime_enviroment_setup.exe.exe by Tiki Taka has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the OutBrowse Revenyou installer. With this installer, users are expecting to download the free Oracle Java Runtime but before that occurs they may be presented with additional offers, mostly potentially unwanted software or adware.
File name:
java_runtime_enviroment_setup.exe.exe
MD5:
7c832346327bbe98b0ffa33db5a7bb1a
SHA-1:
0db94a4e6687c234dd839cfd097755d698f45674
SHA-256:
bd0ab90be01b96579ffde48c076ad396c1ec7e9a05f9e3313ea3d639507ca837
Scanner detections:
1 / 68
Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.
Description:
This is also known as bundleware, or downloadware, which is an downloader designed to simply deliver ad-supported offers in the setup routine of an otherwise legitimate software.
Analysis date:
12/24/2024 6:47:58 PM UTC (today)
Scan engine
Detection
Engine version
Reason Heuristics
PUP.Outbrowse (M)
17.2.28.9
File size:
570 KB (583,632 bytes)
File type:
Executable application (Win32 EXE)
Bundler/Installer:
OutBrowse Revenyou
Language:
Language Neutral
Common path:
C:\users\{user}\downloads\java_runtime_enviroment_setup.exe.exe
Valid from:
1/3/2015 7:00:00 PM
Valid to:
12/17/2015 6:59:59 PM
Subject:
CN=Tiki Taka, O=Tiki Taka, L=Dublin, S=Dublin, C=IE
Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US
Serial number:
6B26E9B78B0A0CFEE90F8E259CD7C237
Compilation timestamp:
12/5/2009 5:50:52 PM
Entropy:
7.9763 (probably packed)
Code size:
23.5 KB (24,064 bytes)