Splash.exe

Splash

Softoware LLC

The application Splash.exe by Softoware has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It runs as a scheduled task under the Windows Task Scheduler triggered daily at a specified time. This file is typically installed with the program Privacy Essential which is a potentially unwanted software program.
Publisher:
Softoware LLC  (signed and verified)

Product:
Splash

Version:
2.6.5.0

MD5:
511bc74b7b7d5ff8bdf4adf0da95faa2

SHA-1:
27ef68aaff69c937fcf38a1945d1cabade199b52

SHA-256:
2ad0933bd3134ae636706ffcc3de2640b7ef88263734ee46885a28662c947e47

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/27/2024 5:27:51 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Softoware (M)
15.7.5.3

File size:
248.4 KB (254,376 bytes)

Product version:
2.6.5.0

Copyright:
Copyright © 2015

Original file name:
Splash.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\privacy essential\splash.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/7/2014 8:00:00 PM

Valid to:
5/8/2015 7:59:59 PM

Subject:
CN=Softoware LLC, O=Softoware LLC, STREET="1225 Franklin Avenue, Suite 325", L=Garden City, S=New York, PostalCode=11530, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00F5129FB072A6BEE47D9FF965F7857074

File PE Metadata
Compilation timestamp:
3/16/2015 8:50:06 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:b3XlR90000000nUaAwA0uEdKdPmop2JORdz/JRJzwyi/O9N/O9Y/O9OT2ZVpoPyV:RiAwAUcHiezbT2jpoPB/hORUJAwAUcjx

Entry address:
0x25EFE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.0491

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
144 KB (147,456 bytes)

Scheduled Task
Task name:
PrivacyEssential_Popup

Trigger:
Daily (Runs daily at 10:00 AM)

Description:
SplashPopup_PrivacyEssential


The file Splash.exe has been discovered within the following program.

Privacy Essential  by Privacy Essential
This is an ad Injector type of malware that is typically bundled with unwanted software offers for legitimate software and once installed is deceptive, difficult to remove as well as impacts the security of the user's computer by displaying intrusive advertisements in the web browser which promote and trick users into installing other unwanted adware or malware.
83% remove it
 
Powered by Should I Remove It?

Remove Splash.exe - Powered by Reason Core Security