openofficesuite-setup-40376179-40376179.exe

Cat Lady Interactive

The application openofficesuite-setup-40376179-40376179.exe has been detected as a potentially unwanted program by 3 anti-malware scanners. This is a setup program which is used to install the application. This program installs potentially unwanted software on your PC at the same time as the software you are trying to install, without adequate consent. The file has been seen being downloaded from intva1.bitdesktop.com and multiple other hosts.
Publisher:
Cat Lady Interactive

Product:
Cat Lady Interactive

Version:
1.2.9.2183

MD5:
14b0d433fee957e7e4f1adafbf83319a

SHA-1:
be98a3b226168a47f164dddfb7ef21231229adbb

SHA-256:
a9181f6bfb126c9f2d1d13c322d56426d7c336b373ce72bcebe0f1e56675ba4d

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
12/27/2024 1:38:11 AM UTC  (today)

Scan engine
Detection
Engine version

Emsisoft Anti-Malware
Gen:Trojan.Heur.JP.3q3@aizV@1oi
11.5.0.6191

ESET NOD32
Win32/DownloadAdmin.Q potentially unwanted application
8.0.319.0

Norman
Gen:Variant.Application.Bundler.DownloadAdmin.9
02.04.2016 17:35:19

File size:
886.1 KB (907,392 bytes)

Product version:
1.2.9.2183

Copyright:
Copyright (C) 2015

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\openofficesuite-setup-40376179-40376179.exe

File PE Metadata
Compilation timestamp:
4/23/2015 1:51:23 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:9g1xusv3lmOGyVIeoQT424V/gRo4lA65U:WxusvfGgNT42E/gRT

Entry address:
0x196B

Entry point:
E8, 30, CA, 00, 00, E9, 5A, C2, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 56, 8B, 74, 24, 08, 57, 33, FF, 3B, F7, 75, 06, 8D, 47, FE, 5F, 5E, C3, 89, 7E, 2C, 89, 7E, 30, 89, 7E, 18, 89, 7E, 08, 89, 7E, 14, 89, 7E, 34, 39, 7E, 20, 75, 07, C7, 46, 20, F0, 86, 40, 00, 39, 7E, 24, 75, 07, C7, 46, 24, 10, 87, 40, 00, 8B, 46, 28, 8B, 4E, 20, 68, 08, AB, 00, 00, 6A, 01, 50, FF, D1, 83, C4, 0C, 3B, C7, 75, 08, 5F, B8, FC, FF, FF, FF, 5E, C3, 89, 46, 1C, 89, 38, 89, B8, F0, 2A, 00, 00, 89, B8, F4, 2A, 00...
 
[+]

Entropy:
7.9651  (probably packed)

Code size:
56.5 KB (57,856 bytes)

The file openofficesuite-setup-40376179-40376179.exe has been seen being distributed by the following 5 URLs.

Remove openofficesuite-setup-40376179-40376179.exe - Powered by Reason Core Security