netgear wnda3100v2 wifi adapter firmware 1 3.exe

N e t M e e t i n g

Mobilnye Proekty , Ooo

The application netgear wnda3100v2 wifi adapter firmware 1 3.exe, “N e t Me eti n g® I ns ta ll er” by Mobilnye Proekty , Ooo has been detected as adware by 14 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from softkumir.ru.
Publisher:
P i r i f o r m L t d .  (signed by Mobilnye Proekty , Ooo)

Product:
N e t M e e t i n g

Description:
N e t Me eti n g® I ns ta ll er

Version:
6.1.0.4

MD5:
4663c27d5272f9abb5b914f5ae446ae2

SHA-1:
161be35affc21a68af80b38f8f5c39522bf833dd

SHA-256:
5017b4430d89676d2ed09556e88a5551e18b3254cad50f1d0af5ae2c6c5d2914

Scanner detections:
14 / 68

Status:
Adware

Analysis date:
12/26/2024 3:41:30 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:PUP-gen [PUP]
2014.9-150514

Dr.Web
Trojan.LoadMoney.262
9.0.1.0134

Emsisoft Anti-Malware
Gen:Heur.Krypt.12
8.15.05.14.06

ESET NOD32
Win32/Kryptik.CDFC trojan
9.7.0.302.0

F-Prot
W32/A-9c7a5c4b
v6.4.7.1.166

F-Secure
Gen:Heur.Krypt.12
11.2015-14-05_5

Kaspersky
Trojan-Downloader.Win32.Agent
14.0.0.2041

Malwarebytes
PUP.Optional.LoadMoney
v2015.05.14.06

McAfee
Program.Packed-CQ
5600.6765

Microsoft Security Essentials
Threat.Undefined
1.197.2095.0

Norman
Gen:Heur.Krypt.12
11.20150514

Reason Heuristics
PUP.MobilnyeProektyOoo
15.5.14.14

Sophos
Virus 'Troj/LdMon-E'
5.14

VIPRE Antivirus
Threat.4657539
39676

File size:
308.4 KB (315,800 bytes)

Copyright:
C o p y r i g h t © 2008 - 2012 P i r i f o r m L t d .

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\netgear wnda3100v2 wifi adapter firmware 1 3.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
5/21/2014 2:00:00 AM

Valid to:
5/22/2015 1:59:59 AM

Subject:
CN="Mobilnye Proekty , Ooo", O="Mobilnye Proekty , Ooo", STREET="Tymenskaya 5, bld. 1", L=Moscow, S=Moscow region, PostalCode=107370, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00D812EDF6481CAD30D5A8D2B9E47437D4

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:7lo50NEVYNSPnnT/Sm5lh6dFckkrE8mUef0xpK8VDd2gL/P/E:7loltV5lh+K320i8VPP

Entry address:
0x1000

Entry point:
E9, 9B, 0A, 04, 00, 8D, 0D, 73, 30, 44, 00, 89, 71, 2C, 83, F9, FF, 7F, 15, 66, C7, 05, 37, 30, 44, 00, 1F, A0, 89, 35, E3, 30, 44, 00, 89, 3D, 7D, 30, 44, 00, 89, 1D, 51, 30, 44, 00, 41, 89, 1D, 99, 30, 44, 00, C6, 05, AF, 30, 44, 00, 89, 89, 0D, 57, 30, 44, 00, 89, 05, D3, 30, 44, 00, C3, 8D, 40, 00, C3, 8D, 40, 00, FF, 25, 24, 30, 44, 00, B8, 4C, 10, 40, 00, C3, 8D, 15, 73, 30, 44, 00, 89, 72, 28, 83, FA, FF, 7F, 15, 66, C7, 05, 37, 30, 44, 00, 1F, A0, 89, 35, E3, 30, 44, 00, 89, 3D, 7D, 30, 44, 00, 89...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
261 KB (267,264 bytes)

The file netgear wnda3100v2 wifi adapter firmware 1 3.exe has been seen being distributed by the following URL.