rapidmediaconverter.exe

Rapid Media Converter

Applon

The application rapidmediaconverter.exe by Applon has been detected as adware by 2 anti-malware scanners. The program is a setup application that uses the Inno Setup installer. It is also typically executed from an Internet Explorer cache folder. The file has been seen being downloaded from i.azzercom.net and multiple other hosts.
Publisher:
Applon   (signed by Applon)

Product:
Rapid Media Converter

Version:
1, 0, 0, 0

MD5:
649043dd067e6b0c61b972bc72f1d6c4

SHA-1:
025b90feac71ad1cf02673dd111fe2deeb6dc70c

SHA-256:
6faa1879136b2dd7afcfbb849229418f7ea84b4144fc8d90ef6195475d858876

Scanner detections:
2 / 68

Status:
Adware

Analysis date:
11/23/2024 8:19:27 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Applon.T
14.8.8.0

VIPRE Antivirus
Blinkx/Applon
31418

File size:
10.6 MB (11,080,152 bytes)

Product version:
1.0.0. 0

Copyright:
©2014

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\rapidmediaconverter.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
8/10/2013 5:00:00 PM

Valid to:
8/11/2014 4:59:59 PM

Subject:
CN=Applon, O=Applon, STREET=44 Primrose Crescent, L=SUNDERLAND, S=Tyne and Wear, PostalCode=SR6 9RJ, C=GB

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
61D4C21BAC72FFC01DD91677B59DA3E6

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:5ZkKjlTUmV42D2Tv4L7ivnBZVrPXLMUdNNZEbZAWhUPl/sT8DEeXcB59f4HyxB:Djx1YTv4wZrP9UzhEsT8DFcr5XxB

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Entropy:
7.9997

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file rapidmediaconverter.exe has been seen being distributed by the following 2 URLs.

Remove rapidmediaconverter.exe - Powered by Reason Core Security