mymp3splitter_setup_ad.exe

My MP3 Splitter

Ye Yizhou

The application mymp3splitter_setup_ad.exe, “My MP3 Splitter Setup ” by Ye Yizhou has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software. The file has been seen being downloaded from www.softonic.com and multiple other hosts.
Publisher:
zxt2007.com   (signed by Ye Yizhou)

Product:
My MP3 Splitter

Description:
My MP3 Splitter Setup

Version:
2.3.2.0

MD5:
8f4f7600073b182934c96299bf50e6f2

SHA-1:
b97af264821d74e2616166c7c752012c36531cd0

SHA-256:
6ccb1e7d0de9047d6dbc3df47e1717422caae48a9a1da9d01ef9778b3f0b2cc4

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/24/2024 7:02:05 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Bundler.YeYizhou.Installer.Meta (M)
16.7.8.10

File size:
990.5 KB (1,014,312 bytes)

Product version:
2.3.2.0

Copyright:
Copyright 2010-2015 zxt2007.com.

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\mymp3splitter_setup_ad.exe

Digital Signature
Signed by:

Authority:
WoSign CA Limited

Valid from:
9/7/2015 8:30:33 AM

Valid to:
9/7/2016 8:30:33 AM

Subject:
CN=Ye Yizhou, L=Longyou, S=Zhejiang, C=CN

Issuer:
CN=WoSign Class 2 Code Signing CA G2, O=WoSign CA Limited, C=CN

Serial number:
304E7576E2082A9B6E87C0FFCC4B397C

File PE Metadata
Compilation timestamp:
7/16/2015 6:54:20 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:IxGj7Z6+FevHtRtwxP2SGjZp0DIGbCHoJrfRaB1:tGfry9gKMGeMRaH

Entry address:
0x113BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 34, 00, 41, 00, E8, E8, 51, FF, FF, 33, C0, 55, 68, 9E, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 5A, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 1E, D8, FF, FF, E8, 6D, D3, FF, FF, 80, 3D, DC, 2A, 41, 00, 00, 74, 0C, E8, 33, D9, FF, FF, 33, C0, E8, 80, 32, FF, FF, 8D, 55, EC, 33, C0, E8, E2, A3, FF, FF, 8B, 55, EC, B8, 54, 86...
 
[+]

Entropy:
7.8889

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

The file mymp3splitter_setup_ad.exe has been seen being distributed by the following 23 URLs.

http://www.softonic.com/sads/tracker.php?ev=c&co=CL&sid=92148c945d978ff7b2ecf97c042d0654&upv=7e597ce2fa9123bf3e073f4fa78c7bbb&z=results&sk=0&abp=0&params=F24F8F4D368AFA5D32C8A90D9EFD1CBA5806AB8A5D2B7B4D45D5F8DA7D68C70B03A83108B22DA8AD2916166919FAB8BAFD982D934056F786795E6ED223D5FDFCD42986F1A31FA21EB277B47E2F0B09BFDB597D52F8E1999599B5149E2F412330F212BFECBE703CFC2F1D06D549054F77AF99D9630942F3A6F48D6970C1E5AFC01A34E65FAB05DEEA9478897281D008362AD664AF82A6BF09B518E02A2933814E&h=5F946A4931587537A5029CC5D40B50BD7ACF0AF2593751C72DE0C01A48B0AA8F&directdownload=1&f=333471&d=http://en.zxt2007.com/.../mymp3splitter_setup_ad.exe

http://www.softonic.com/sads/tracker.php?ev=c&co=CO&sid=354cc98783c6ad9fcb52d62d4fa68a76&upv=8d6d2a1c4277357ff8555875805e40ff&z=results&sk=0&abp=1&params=F24F8F4D368AFA5D32C8A90D9EFD1CBA5806AB8A5D2B7B4D45D5F8DA7D68C70B03A83108B22DA8AD2916166919FAB8BA8EAC0CDFB1765CC699EDEDF5D1754783570927C75BC32F69D6356476F5D8224E6856FCBDE1ABBBC8C5D405EBD79A796D2B2A173EFECAAD4D63EBBFB74401AA9969EF77BEF94EAF743B5381A4BEF5F8B717E4900B5FDD31DC3FED8BF78E1B52F100F5EDEB0B89BA4697A41B20CE3B3A38&h=858A0635E71F48657F2F3A3B547242DA5F57D9FA1735C2F916E9A47DC2FE1358&directdownload=1&f=333471&d=http://en.zxt2007.com/.../mymp3splitter_setup_ad.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=IN&sid=825b5d13f1ab3dfdb224e435550fb588&upv=0d637e923b0a71789f00c2c2ad34a6cc&z=results&sk=0&abp=0&params=F39B2A32BFC101987B1458170C278E039DCCD7061C29B2A609FEC3D7FA748B562CF28C069F96E0E4B218F40A5541CBE582458BC1868DFE74526651469E16BE074EBA912FE5D2A3ACF622B5ED12DE88101D717BD08CC1AEE6E1C194A8C6CF312BF2896165EAD87D5AF82FE53DE3ED8A24C5E482F1E52AE2C67028F3589C8B9538EDEC8B408B9C1795D614BA82D5F3360ED54B9DF6C8619D675B61D9F08508AD5E&h=35BC9FF83CECC174D88D1AD62D2AB1753A8FB0D2515F7B3F9771919CB072E409&directdownload=1&f=333471&d=http://en.zxt2007.com/.../mymp3splitter_setup_ad.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=IN&sid=a844f0970ee53b1048edbbab3c6d3e9a&upv=56a59080cab42aa598fd098211f6a578&z=results&sk=0&abp=0&params=F39B2A32BFC101987B1458170C278E039DCCD7061C29B2A609FEC3D7FA748B562CF28C069F96E0E4B218F40A5541CBE5B977CF78886A791E0EAF34EDB20A99F3547C696186572985681B7E86D35AA37307B518DA33A173D3A0437AF4BC5DEB40A52A5F3DD8F9C8F0015B30D0D3DFB614038A156AF9C64BA48AE22163D575A5C7E5302CA53F36275DF45EF2505D55B8750E66795A1617F7E77D484FD0DA782029&h=872ECD2204B79EC67EC2EF5948A18EC7582146FFBF0FAB7EE543E38A12595A7D&directdownload=1&f=333471&d=http://en.zxt2007.com/.../mymp3splitter_setup_ad.exe

http://www.softonic.com/sads/tracker.php?ev=c&co=AR&sid=caad68082376fb20528fff191f629b16&upv=0c1cdb570e0815997e9fc9eafeb6c9fb&z=results&sk=0&abp=0&params=F24F8F4D368AFA5D32C8A90D9EFD1CBA5806AB8A5D2B7B4D45D5F8DA7D68C70B03A83108B22DA8AD2916166919FAB8BA8856CC407A79EA993CF77F76E5DDF047CDE1E4A7B6C053E78601209A7A95816736AAA794EEA9D3CAB3262065B675C2A607AF41B9B7A117C631C57781138782F62402462D72E4990D6BF38FDAA5000F6F349720A195D9B3CE6A39C77C2E10C9310F61B2901CB8D4F78AB83F94CA9C41EA&h=B65B39A8E0013AE6EA5CA4C0C79AB9ACDE4D9499640273E074DF983F626AD614&directdownload=1&f=333471&d=http://en.zxt2007.com/.../mymp3splitter_setup_ad.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=IN&sid=2810860477d852fe23d4dae60545edc1&upv=c01917d396265be7058eb4aa1a5a62d5&z=results&sk=0&abp=0&params=F39B2A32BFC101987B1458170C278E039DCCD7061C29B2A609FEC3D7FA748B562CF28C069F96E0E4B218F40A5541CBE5EA4B5CA85556304F2D83B88B76FEE64B31DE01BB8325E4B38B86D9D49B9F87402ACAAE0E8FE2581C90EAAE77BD85725C94B425B44443EC29496165CB305F6DE38BF3EDD8D8069BA15D7E54CE109B724C15BAA06B9FC993378FEF435DCC742DA2CA46102F6C50EA2557E5FEC7DF4E7DBE&h=4B94DC1440E4157E7E0C6FF1D3D320A3F5E7426DBC2553CA28A97BF837EF8FAB&directdownload=1&f=333471&d=http://en.zxt2007.com/.../mymp3splitter_setup_ad.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=BR&sid=eb8fab681e0d905c953e2ce8377e3b2e&upv=fa3f820b05ace92534de450474ebac68&z=results&sk=0&abp=0&params=F39B2A32BFC101987B1458170C278E039DCCD7061C29B2A609FEC3D7FA748B562CF28C069F96E0E4B218F40A5541CBE5EA4B5CA85556304F2D83B88B76FEE64B31DE01BB8325E4B38B86D9D49B9F8740954843BFF3DF36DCE1073C1917E70A936BBC69EC801DCE8D7EC33750C71EE044A97862F900811AD2E695FF76FF5E3171EF09B5665BFAA6851067E2220F3ACC2523382B3F4F0758CF3FCA93BBCFD4C47E&h=111D3F8B7C158011F8392F38E7579A987EF24E6D581EA14151BD63D2AE15114A&directdownload=1&f=333471&d=http://en.zxt2007.com/.../mymp3splitter_setup_ad.exe

http://www.softonic.com/sads/tracker.php?ev=c&co=CO&sid=74ee7a4689c58c586a800350f8465aa5&upv=9d8dd5eb1d50e10b0323e61d0b3a9032&z=results&sk=0&abp=0&params=F24F8F4D368AFA5D32C8A90D9EFD1CBA5806AB8A5D2B7B4D45D5F8DA7D68C70B03A83108B22DA8AD2916166919FAB8BA45E6BC36DEB52551B6889F5314B9FDEA14E382AFE526B212BBC8774D20B4EDC32BE162D3CB1AFB78BA03E90A28319E1D1F83A8737D384F97C9A85358C574D858AA2171F478595D6C25BBAB2C74303FCBDCAEE02EC45F70E5191A950543BF58190E5D2799BD1EC337403DE4C9EC334350&h=C6D275EAC54ADD223AACD8BF36BA842EF51F4FFFD56893D02D0C8F8336A5BF67&directdownload=1&f=333471&d=http://en.zxt2007.com/.../mymp3splitter_setup_ad.exe

http://my_mp3_splitter.softonic.com/descargar

Remove mymp3splitter_setup_ad.exe - Powered by Reason Core Security