kaspersky internet security 2015 keys_10924_i40324212_il345.exe

Runner Utility

BERSHNET LLC

The application kaspersky internet security 2015 keys_10924_i40324212_il345.exe by BERSHNET has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Dummy, Ltd.  (signed by BERSHNET LLC)

Product:
Runner Utility

Version:
1.0.0.188

MD5:
ee6b5aa86c3a3fb22778dc01d919682c

SHA-1:
0efc0dc67f243fa1df1f707ade184bd74bbdf72b

SHA-256:
17169e8d3269b793c83dc5ac520339ed2d8b649510f40dac59cfe23ffb8bd365

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/23/2024 6:59:39 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Amonitize (M)
17.3.16.3

File size:
1.4 MB (1,491,472 bytes)

Product version:
1.0.0.188

Copyright:
Copyright (C) 2013

Original file name:
runner.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\kaspersky+internet+security+2015+keys_10924_i40324212_il345.exe\kaspersky internet security 2015 keys_10924_i40324212_il345.exe\kaspersky internet security 2015 keys_10924_i40324212_il345.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/6/2015 7:00:00 AM

Valid to:
2/7/2016 6:59:59 AM

Subject:
CN=BERSHNET LLC, O=BERSHNET LLC, STREET="st. 600-richya b.66, of.10", L=Vinnitsya, S=Vinnitskaya, PostalCode=21027, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00E2D6C6F8DDF832E09DCF766B299AD2A9

File PE Metadata
Compilation timestamp:
8/4/2015 10:13:10 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x3C4DEC

Entry point:
54, 9C, E8, A9, 59, 00, 00, E8, 26, 8A, B0, D4, B0, F3, 89, 3D, D5, 2D, E5, E0, 04, B9, 77, 77, 9F, 67, AF, A2, 72, FF, F9, EC, 1C, C9, 3F, CF, 3B, D3, 33, D3, 2F, B9, 7B, 5E, 05, 50, 70, 8A, 5F, 5D, 8D, 38, FC, 12, C4, E0, 9A, 9D, 20, 20, B0, 7D, 90, 46, 7E, 7A, 6C, 7E, 68, 19, D1, 29, 81, 49, 20, F5, 98, 5B, A4, FA, E8, F4, DA, C4, AA, B4, 9B, 89, 65, 6F, 5F, D2, C9, 48, D0, CC, 32, 64, 7E, 2A, 1B, 73, AB, FB, 95, 83, 6B, 6B, 31, 56, EA, 30, 53, D4, F5, 98, 62, 46, 41, 10, 8B, E0, 08, 2F, 7E, 68, 4C, BD...
 
[+]

Entropy:
7.9943  (probably packed)

Code size:
188 KB (192,512 bytes)