pazera_free_3gp_to_avi_converter.exe

Pazera Free 3GP to AVI Converter

Pazera Jacek

The application pazera_free_3gp_to_avi_converter.exe, “Pazera Free 3GP to AVI Converter Setup ” by Pazera Jacek has been detected as a potentially unwanted program by 2 anti-malware scanners. This is a setup and installation application and has been known to bundle potentially unwanted software. The installer uses the InstallMonetizer platform which will donwload and install adware toolbars and other potentially unwanted software offers during setup. The file has been seen being downloaded from www.pazera-download.com and multiple other hosts.
Publisher:
Jacek Pazera   (signed by Pazera Jacek)

Product:
Pazera Free 3GP to AVI Converter

Description:
Pazera Free 3GP to AVI Converter Setup

MD5:
c33635e5829dc4fdb4478edb34e0334e

SHA-1:
2471d45b6693b79ac8069ff28f1ebf2e05127441

SHA-256:
2f3eb159ee75f54e774aac871c62b7c39cc5b945e699ed9976cec5f8a91e55e4

Scanner detections:
2 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallMonetizer distribution platform to bundle adware.

Analysis date:
12/25/2024 11:52:38 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

ESET NOD32
Win32/InstallMonetizer.AF
8.10096

Reason Heuristics
PUP.InstallMonetizer.Bundle (M)
16.3.10.15

File size:
7.8 MB (8,223,344 bytes)

Product version:
1.6

Copyright:
Copyright © 2014 Jacek Pazera, http://pazera-software.com

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\pazera_free_3gp_to_avi_converter.exe

Digital Signature
Signed by:

Authority:
Unizeto Technologies S.A.

Valid from:
4/23/2014 8:58:31 AM

Valid to:
4/22/2017 8:58:31 AM

Subject:
E=jacekpazera@wp.pl, CN=Jacek Pazera, O=Pazera Jacek, C=PL

Issuer:
CN=Certum Code Signing CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
216724962F570D48391E5FEDA7B2A654

File PE Metadata
Compilation timestamp:
10/9/2012 10:48:22 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:z/0ps3XhyylTN3OUTuKz8u8ycly+G3BSGfeqxqbKEc:z/0sXECkUTuhZycw+sMgxqA

Entry address:
0xF3BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 64, ED, 40, 00, E8, E8, 71, FF, FF, 33, C0, 55, 68, 89, FA, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 45, FA, 40, 00, 64, FF, 32, 64, 89, 22, A1, 48, 3B, 41, 00, E8, BE, F7, FF, FF, E8, 65, F3, FF, FF, 8D, 55, EC, 33, C0, E8, F7, C3, FF, FF, 8B, 55, EC, B8, 4C, 66, 41, 00, E8, 6A, 58, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, 4C, 66, 41, 00, B2, 01...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
59 KB (60,416 bytes)

The file pazera_free_3gp_to_avi_converter.exe has been seen being distributed by the following 2 URLs.

Remove pazera_free_3gp_to_avi_converter.exe - Powered by Reason Core Security