tunertv.exe

The executable tunertv.exe has been detected as malware by 15 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from telewizjairadioprogramy.pl.
Description:
Tuner Tv

Version:
1.7.0.0

MD5:
de7358ea8c172b20a29fc072a42cec84

SHA-1:
337b1f708d6803e698bd5f70425d4731a51913f7

SHA-256:
791934bb9aa94bf4732126acc0d8a7013479a6de7a0f172fd6c11e19059fc555

Scanner detections:
15 / 68

Status:
Malware

Analysis date:
12/27/2024 5:31:56 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.15530370
346

Agnitum Outpost
Trojan.Rogue
7.1.1

Avira AntiVirus
TR/Rogue.2096128.3
8.3.2.4

avast!
Win32:Malware-gen
2014.9-160223

F-Prot
W32/Banload.M.gen
v6.4.7.1.166

IKARUS anti.virus
Trojan.Rogue
t3scan.2.0.3.0

K7 AntiVirus
Trojan
13.212.18510

McAfee
Artemis!DE7358EA8C17
5600.6480

MicroWorld eScan
Trojan.Generic.15530370
17.0.0.162

Qihoo 360 Security
HEUR/QVM41.2.Malware.Gen
1.0.0.1077

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
23.00.65.16221

Sophos
Mal/Generic-S
4.98

Trend Micro
TROJ_GEN.R00XC0OLL15
10.465.23

Vba32 AntiVirus
suspected of Backdoor.Delf.124
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
46688

File size:
2 MB (2,096,128 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2006-2013 - Nt Network Łukasz Szabelski

File type:
Executable application (Win32 EXE)

Language:
Polska (Polen)

Common path:
C:\users\{user}\downloads\tunertv.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:tcsZ2CiKrQALAfH76mUAjhe+4dX47g5Wlpht29HpJrzSWdIqfbjpcaX/9a2DEHB7:t9JRe6mHg+uFIpz29va6t5XcS8/

Entry address:
0x8E028

Entry point:
55, 8B, EC, 83, C4, F0, B8, 48, DC, 48, 00, E8, 90, 88, F7, FF, A1, 50, 0F, 49, 00, 8B, 00, E8, A0, 64, FD, FF, 8B, 0D, 04, 11, 49, 00, A1, 50, 0F, 49, 00, 8B, 00, 8B, 15, D4, 99, 48, 00, E8, A0, 64, FD, FF, 8B, 0D, EC, 10, 49, 00, A1, 50, 0F, 49, 00, 8B, 00, 8B, 15, EC, 85, 48, 00, E8, 88, 64, FD, FF, 8B, 0D, 90, 0E, 49, 00, A1, 50, 0F, 49, 00, 8B, 00, 8B, 15, D4, 83, 48, 00, E8, 70, 64, FD, FF, A1, 50, 0F, 49, 00, 8B, 00, E8, E4, 64, FD, FF, E8, 17, 63, F7, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
564.5 KB (578,048 bytes)

The file tunertv.exe has been seen being distributed by the following URL.

Remove tunertv.exe - Powered by Reason Core Security