popsdravtancdicka tfile ru.exe

Bunndle Stand-Alone Offer Manager, OM 2.4.0.0, 2013-09-18 11:24

IT River

The application popsdravtancdicka tfile ru.exe, “Bunndle Stand-Alone Offer Manager” by IT River has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Bunndle, Inc.  (signed by IT River)

Product:
Bunndle Stand-Alone Offer Manager, OM 2.4.0.0, 2013-09-18 11:24

Description:
Bunndle Stand-Alone Offer Manager

Version:
1.0.0.4

MD5:
6b826f3ab52a812322cd28d494c71138

SHA-1:
dc19ed4ba62c7fe9bfea71413743433498d45937

SHA-256:
c5069825045a704a321536d258ecffb367766b69a852ba4836c27e2eefcccdeb

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
2/25/2025 10:26:07 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.3.5.10

File size:
520.9 KB (533,352 bytes)

Product version:
1.0.0.4

Copyright:
Copyright 2013 Bunndle, Inc. All rights reserved.

Original file name:
BunndleOfferManager

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\popsdravtancdicka tfile ru.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
2/25/2014 3:00:00 AM

Valid to:
2/26/2015 2:59:59 AM

Subject:
CN=IT River, O=IT River, STREET="Obolenskiy, 9", L=Moscow, S=Moscow oblast, PostalCode=119021, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0F02E0C593A3B9A15B22F5853C90D66B

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x2158

Entry point:
31, C0, 89, 05, BC, 25, 47, 00, 74, 1A, 89, 0D, 5A, 00, 47, 00, C7, 05, AC, 00, 47, 00, E4, 6F, 01, 00, C7, 05, 36, 00, 47, 00, 4A, 6F, 01, 00, BF, 9C, 10, 40, 00, 89, 3D, 10, 30, 47, 00, E9, B8, F0, FF, FF, 89, 1D, 9D, 00, 47, 00, 89, 35, 45, 00, 47, 00, 89, 15, 91, 00, 47, 00, 3B, 45, 10, 7F, 2B, 89, 3D, 52, 00, 47, 00, 89, 1D, D4, 00, 47, 00, 8D, 05, 5D, 00, 47, 00, 89, 58, 08, C6, 05, 54, 00, 47, 00, 8E, 89, 3D, 12, 00, 47, 00, 66, C7, 05, 9F, 00, 47, 00, 95, F7, 87, 1D, D1, 00, 47, 00, C3, 8D, 40, 00...
 
[+]

Code size:
443 KB (453,632 bytes)

Remove popsdravtancdicka tfile ru.exe - Powered by Reason Core Security