mdupdate.exe

MyDailyVideo

BERSHNET LLC

The application mdupdate.exe by BERSHNET has been detected as adware by 4 anti-malware scanners. It runs as a separate (within the context of its own process) windows Service named “My Daily Update”. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install.
Publisher:
My Daily Soft.  (signed by BERSHNET LLC)

Product:
MyDailyVideo

Description:
My Daily Video

Version:
1.0.0.596

MD5:
8efa894374a92435b4eb259867e70aec

SHA-1:
c5e58d42c50ad7a508bfd5e5c5519d137183c53b

SHA-256:
9898dfa6c5776b5f74aa2180ece44c1bdfa2a43515c8cf25ba2f3cff87f054ef

Scanner detections:
4 / 68

Status:
Adware

Analysis date:
11/23/2024 10:58:21 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAdware
1.3.0.6379

Dr.Web
Trojan.Amonetize.2368
9.0.1.0102

Reason Heuristics
PUP.Service.BERSHNET
15.4.12.14

VIPRE Antivirus
Amonetize
39250

File size:
369 KB (377,872 bytes)

Product version:
1.0.0.596

Copyright:
Copyright © My Daily Soft. 2015

Original file name:
mdupdate.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\mydailyupdate\mdupdate.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/5/2015 6:00:00 PM

Valid to:
2/6/2016 5:59:59 PM

Subject:
CN=BERSHNET LLC, O=BERSHNET LLC, STREET="st. 600-richya b.66, of.10", L=Vinnitsya, S=Vinnitskaya, PostalCode=21027, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00EC2CA0DA3303138873D39569A5F3AF0E

File PE Metadata
Compilation timestamp:
4/7/2015 5:17:32 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:wAa18B5Uh8Stq86/l56Q+ZsOP7ri8SQJ9zI9zpcSZlC/aQxvd5ooAWb31wl:6Ga8Sg8kMcY7rgppXjCSEvjg

Entry address:
0x5CACE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.8777

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
363 KB (371,712 bytes)

Service
Display name:
My Daily Update

Service name:
MyDailyUpdate

Type:
Win32OwnProcess


Remove mdupdate.exe - Powered by Reason Core Security