takenpextendedblurayavcaachmpengsweanoncrypt__15022_i1601556693_il884270.exe.rar

The file takenpextendedblurayavcaachmpengsweanoncrypt__15022_i1601556693_il884270.exe.rar has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install. The file has been seen being downloaded from a.kat.cr.
MD5:
6aa4493754614ed6656269f0f7e1b5b8

SHA-1:
b32034d46571d9240c657e253c4a8dcd466d8011

SHA-256:
9015448a09b56f1ce613999f47d0c34e51d6155c175c51bec861021ac2c232b9

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 4:30:44 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Adware.Amonetize (M)
16.7.17.3

File size:
629.6 KB (644,671 bytes)

Common path:
C:\users\{user}\downloads\takenpextendedblurayavcaachmpengsweanoncrypt__15022_i1601556693_il884270.exe.rar

The file takenpextendedblurayavcaachmpengsweanoncrypt__15022_i1601556693_il884270.exe.rar has been seen being distributed by the following URL.