steam+api.dll+civilization+v_10924_i35886509_il345.exe.zip

The file steam+api.dll+civilization+v_10924_i35886509_il345.exe.zip has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install. The file has been seen being downloaded from downprov.red-9-small-button.com.
MD5:
e79593d5b6e8431f93255284a305d122

SHA-1:
acb75c64fc9d04586883f6299b2951c4f672586a

SHA-256:
1f831e1d09d463a46d29e8e3b1d2db001f20203536878f206ae242bde8faa67f

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
1/12/2025 4:27:03 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Amonetize.Meta (M)
16.7.19.19

File size:
1.5 MB (1,531,316 bytes)

Common path:
C:\users\{user}\downloads\steam+api.dll+civilization+v_10924_i35886509_il345.exe.zip

The file steam+api.dll+civilization+v_10924_i35886509_il345.exe.zip has been seen being distributed by the following URL.