non confirmé 118060.crdownload

SmileFiles Installer

Nedonte Inc

The file non confirmé 118060.crdownload by Nedonte Inc has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
http://smile-files.com  (signed by Nedonte Inc)

Product:
SmileFiles Installer

Version:
1, 0, 643, 1

MD5:
c0594fd1a402790e68afc02348397eae

SHA-1:
76781bc8cb1c613f6fc62ccf4d70d3bb6cb87198

SHA-256:
c1c80416c8d598c29998ee6f010f47375a5afc86e300874cdff8a4f70a271335

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/15/2024 2:47:23 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.ExpressDownloader (M)
16.12.30.13

File size:
3.2 MB (3,338,920 bytes)

Product version:
1.0.0.1

Copyright:
Copyright http://smile-files.com (C) 2014

Original file name:
SmileFiles.exe

Language:
English

Common path:
C:\users\{user}\downloads\non confirmé 118060.crdownload

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
12/18/2014 1:00:00 AM

Valid to:
12/22/2016 1:00:00 PM

Subject:
CN=Nedonte Inc, O=Nedonte Inc, L=Mahe, C=SC

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
05EF10CC32145EAD5B15575FD0B9EF79

File PE Metadata
Compilation timestamp:
4/9/2015 11:06:58 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x446FF0

Entry point:
E8, 1E, 17, D6, FF, 66, 0F, A3, E5, E8, 06, 33, D1, FF, C0, E1, EC, E0, 25, A3, 6D, 59, 86, 67, A4, 25, CE, 90, 18, 64, 79, 2F, 5E, 96, 6F, 71, 3C, A1, 14, DC, F1, DC, E9, D7, E6, 06, EF, 05, 00, E8, 05, BB, 25, EF, 82, 0C, 29, BC, D8, 3A, FC, 7D, 1E, 05, 54, 51, 6F, 77, 0E, 85, 83, 6F, 50, 5D, 26, DD, D3, C4, 4C, B4, EC, 4A, 96, 82, 60, 37, D9, 41, 9D, FA, 1C, 86, BB, 22, 68, 26, EF, 98, 15, 81, 32, 18, E2, AB, B1, 86, 28, 00, 92, CB, E2, F5, 87, 87, 2E, 18, 3C, E5, 97, E6, 07, 4D, AD, 95, 28, DA, 0B, 71...
 
[+]

Entropy:
7.9940  (probably packed)

Code size:
802.5 KB (821,760 bytes)

Remove non confirmé 118060.crdownload - Powered by Reason Core Security