pazera_free_video_to_3gp_converter.exe

Pazera Free Video to 3GP Converter

Pazera Jacek

The application pazera_free_video_to_3gp_converter.exe, “Pazera Free Video to 3GP Converter Setup ” by Pazera Jacek has been detected as a potentially unwanted program by 3 anti-malware scanners. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software. The installer uses the InstallMonetizer platform which will donwload and install adware toolbars and other potentially unwanted software offers during setup. The file has been seen being downloaded from www2.tusfiles.net a web site host known to distribute potentially unwanted software operated by Artur Kozak.
Publisher:
Pazera Jacek   (signed by Pazera Jacek)

Product:
Pazera Free Video to 3GP Converter

Description:
Pazera Free Video to 3GP Converter Setup

MD5:
9bdfe3898b9064fc45bd0e8dd2aa6fb5

SHA-1:
dcb99a29d231f10c3069ef9866b7abe70c3ccde2

SHA-256:
35ec25342c93214ce566d4ff05b80955c509c3032ccaeacab958dda6529a4ac7

Scanner detections:
3 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallMonetizer distribution platform to bundle adware.

Analysis date:
11/18/2024 12:36:15 AM UTC  (today)

Scan engine
Detection
Engine version

Baidu Antivirus
PUA.Win32.InstallMonetizer
4.0.3.15827

ESET NOD32
Win32/InstallMonetizer.AF potentially unwanted
9.12151

Reason Heuristics
PUP.InstallMonetizer.Bundle (M)
16.3.10.15

File size:
3.5 MB (3,678,688 bytes)

Product version:
1.2

Copyright:
Copyright © 2012 Jacek Pazera, http://pazera-software.com

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\pazera_free_video_to_3gp_converter.exe

Digital Signature
Signed by:

Authority:
Unizeto Technologies S.A.

Valid from:
5/10/2012 1:48:07 PM

Valid to:
5/10/2013 1:48:07 PM

Subject:
E=jacekpazera@wp.pl, CN=Jacek Pazera, O=Pazera Jacek, C=PL

Issuer:
CN=Certum Code Signing CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL

Serial number:
3235239474BA72D27A7E6ADD9FD85B75

File PE Metadata
Compilation timestamp:
10/9/2012 3:48:22 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:KkAX4Kf0JPDVeCYEjMGt2VLDG2DYZ0RuUd5VEM1D+YXLr/:KGKcVVeG9oh1wGV1ik3

Entry address:
0xF3BC

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 64, ED, 40, 00, E8, E8, 71, FF, FF, 33, C0, 55, 68, 89, FA, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 45, FA, 40, 00, 64, FF, 32, 64, 89, 22, A1, 48, 3B, 41, 00, E8, BE, F7, FF, FF, E8, 65, F3, FF, FF, 8D, 55, EC, 33, C0, E8, F7, C3, FF, FF, 8B, 55, EC, B8, 4C, 66, 41, 00, E8, 6A, 58, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, 4C, 66, 41, 00, B2, 01...
 
[+]

Entropy:
7.9902

Developed / compiled with:
Microsoft Visual C++

Code size:
59 KB (60,416 bytes)

The file pazera_free_video_to_3gp_converter.exe has been seen being distributed by the following URL.

Remove pazera_free_video_to_3gp_converter.exe - Powered by Reason Core Security