smileycentralbetasetup1.1.2.4-3.exe

Fun Web Products, Inc.

The application smileycentralbetasetup1.1.2.4-3.exe by Fun Web Products has been detected as a potentially unwanted program by 27 anti-malware scanners. This version of the installer will bundle a Mindspark/MyWebSearch Toolbar, a potentially unwanted web browser extension.
Publisher:
Fun Web Products, Inc.  (signed and verified)

MD5:
12f1204e90cb4a054c13af0ddd0161f7

SHA-1:
9c84b57871149622e025ce25ac9ed9b58580a96e

SHA-256:
05f75d865118e4925a8e1b97b5c8787b74f60119b0c6b29ec8e8071120793d5a

Scanner detections:
27 / 68

Status:
Potentially unwanted

Explanation:
Bundles the Mindspark (MyWebSearch/Ask) toolbar, a web browser extension that will modify a user's search and home pages.

Analysis date:
12/2/2024 9:44:33 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Adware.Toolbar
7.1.1

Avira AntiVirus
ADSPY/Toolbar.MyWebSearch.D.1
7.11.82.158

avast!
Win32:Mywebsearch-M [Tool]
2014.9-160731

Bitdefender
Dropped:Adware.Toolbar.Mywebsearch.D
1.0.20.1065

Clam AntiVirus
0.98/18155

Comodo Security
ApplicUnwnt
16368

Dr.Web
Adware.MWS
9.0.1.0213

Emsisoft Anti-Malware
Dropped:Adware.Toolbar.Mywebsearch
8.16.07.31.01

ESET NOD32
Win32/AdInstaller (variant)
10.8408

Fortinet FortiGate
Adware/MyWebSearch
7/31/2016

F-Prot
W32/Mywebsearch.I.gen
v6.4.7.1.166

F-Secure
Dropped:Adware.Toolbar.Mywebsearch
11.2016-31-07_1

G Data
Dropped:Adware.Toolbar.Mywebsearch
16.7.22

IKARUS anti.virus
not-a-virus:WebToolbar.Win32.MyWebSearch
t3scan.2.0.3.0

K7 AntiVirus
Unwanted-Program
13.170.8800

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.-178

MicroWorld eScan
Dropped:Adware.Toolbar.Mywebsearch.D
17.0.0.639

NANO AntiVirus
Riskware.Win32.MyWebSearch.qrwkx
0.24.0.52593

Norman
Suspicious_Gen2.COOCD
11.20160731

nProtect
Dropped:Adware.Toolbar.Mywebsearch.D
13.06.03.02

Panda Antivirus
Application/MyWebSearch
16.07.31.01

Reason Heuristics
PUP.Mindspark (M)
16.7.31.13

Rising Antivirus
Trojan.Win32.Generic.11ED7DE7
23.00.65.16729

Trend Micro House Call
GRAY_Gen.0X1856
7.2.213

Trend Micro
GRAY_Gen.0X1856
10.465.31

Vba32 AntiVirus
3.12.22.2

VIPRE Antivirus
18390

File size:
1.2 MB (1,209,592 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\metacafe\smileycentralbetasetup1.1.2.4-3.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/16/2003 2:00:00 AM

Valid to:
7/16/2004 1:59:59 AM

Subject:
CN="Fun Web Products, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Fun Web Products, Inc.", L=Irvington, S=NY, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2001 CA, OU=Terms of use at https://www.verisign.com/rpa (c)01, OU=VeriSign Trust Network, O="VeriSign, Inc."

Serial number:
025A7D53803D2C4C78B08CBEB3CFA888

File PE Metadata
Compilation timestamp:
2/25/2004 11:10:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:crO9zWHvkn/2aEF1WqboZpFTf5apbFxHHDH6wCvyReLhNU3/Hu:crgzW6/2aeIqWFTfcfHvCpi2

Entry address:
0x148F

Entry point:
55, 8B, EC, 83, EC, 44, 53, 56, 6A, 00, FF, 15, 68, 20, 40, 00, A3, 48, 30, 40, 00, FF, 15, 4C, 20, 40, 00, 8B, 1D, 64, 20, 40, 00, 8B, F0, 85, F6, 75, 04, 6A, FF, FF, D3, 8A, 06, 57, 8B, 3D, 74, 20, 40, 00, 3C, 22, 75, 1B, 56, FF, D7, 8B, F0, 8A, 06, 3C, 22, 74, 04, 84, C0, 75, F1, 80, 3E, 22, 75, 15, 56, FF, D7, 8B, F0, EB, 0E, 3C, 20, 7E, 0A, 56, FF, D7, 8B, F0, 80, 3E, 20, 7F, F6, 8A, 06, 84, C0, 74, 04, 3C, 20, 7E, E1, 83, 65, E8, 00, 8D, 45, BC, 50, FF, 15, 60, 20, 40, 00, F6, 45, E8, 01, 5F, 74, 06...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
4 KB (4,096 bytes)

Remove smileycentralbetasetup1.1.2.4-3.exe - Powered by Reason Core Security