setup{87a867cc-b75b-4c0d-9bb5-c76a3a47efe1}.exe

WebAppTech Coding LLC

This is part of an adware program designed to inject advertising in the web browser (banners, text-links) as well as modify the normal behavior of the browser. Part of the Injekt brand of unwanted programs. The application setup{87a867cc-b75b-4c0d-9bb5-c76a3a47efe1}.exe by WebAppTech Coding has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
WebAppTech Coding LLC  (signed and verified)

MD5:
c459e98f729f3d8575b93b2678193cfd

SHA-1:
8fcb9bdf0977ae9db5909371325b776f61ac9a5a

SHA-256:
f5f5066232728c78d07a57d6f2a1d8d540540adf38a528451df4b5a3c210a509

Scanner detections:
1 / 68

Status:
Adware

Explanation:
Injects display ads (banner ads), in-text ads, interstitial ads, or other types of ads in the web browser as well as alters the browsers settings (home page, search, DNS, and security protocols).

Analysis date:
11/23/2024 2:15:08 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Injekt.WebAppTe.Installer (M)
16.6.25.7

File size:
1 MB (1,085,304 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\setup{87a867cc-b75b-4c0d-9bb5-c76a3a47efe1}.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/23/2013 7:00:00 PM

Valid to:
12/24/2014 6:59:59 PM

Subject:
CN=WebAppTech Coding LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=WebAppTech Coding LLC, L=Grandville, S=Michigan, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1A6411A4888DF6223DF9C572F9BE2E96

File PE Metadata
Compilation timestamp:
4/11/2014 2:44:37 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:wuC2JwEGU55epUx/OhTiXJRgLWRVTOxMFz:wuC2JwEGU55epUx/OhTiXJRgLWRVTOxa

Entry address:
0x9BC81

Entry point:
61, 3A, 38, 39, 30, 29, 0D, 0A, 09, 61, 74, 20, 63, 6F, 6D, 2E, 69, 6E, 74, 65, 6C, 6C, 69, 6A, 2E, 6C, 61, 6E, 67, 2E, 70, 72, 6F, 70, 65, 72, 74, 69, 65, 73, 2E, 78, 6D, 6C, 2E, 58, 6D, 6C, 50, 72, 6F, 70, 65, 72, 74, 69, 65, 73, 49, 6E, 64, 65, 78, 2E, 69, 73, 50, 72, 6F, 70, 65, 72, 74, 69, 65, 73, 46, 69, 6C, 65, 28, 58, 6D, 6C, 50, 72, 6F, 70, 65, 72, 74, 69, 65, 73, 49, 6E, 64, 65, 78, 2E, 6A, 61, 76, 61, 3A, 31, 32, 39, 29, 0D, 0A, 09, 61, 74, 20, 63, 6F, 6D, 2E, 69, 6E, 74, 65, 6C, 6C, 69, 6A, 2E...
 
[+]

Entropy:
5.3090

Code size:
784.5 KB (803,328 bytes)