tuneup+utilities+2014+espanol+final+poderoso+optimizador+para+su+pc.exe

The application tuneup+utilities+2014+espanol+final+poderoso+optimizador+para+su+pc.exe has been detected as a potentially unwanted program by 19 anti-malware scanners. This is a setup program which is used to install the application. It is built using the Crossrider cross-browser extension toolkit. While the file utilizes the Crossrider framework and delivery services, it is not owned by Crossrider. The file has been seen being downloaded from bestorms.info and multiple other hosts.
MD5:
3dca7f9fd0c9449d83afc4a7561d27f3

SHA-1:
faa5d7f13342c6eeffed61d0356c15547b2d57f4

SHA-256:
d560efec7451631944131035f891070bf093ab1c4f4920c8393466e63978bce7

Scanner detections:
19 / 68

Status:
Potentially unwanted

Explanation:
The software may change the browser's home page and search provider settings as well as display advertisements.

Analysis date:
11/23/2024 5:30:19 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.MPlug.16
5850519

AhnLab V3 Security
PUP/Win32.MultiPlug
2014.11.28

Avira AntiVirus
ADWARE/MultiPlug.Gen7
7.11.189.56

avast!
Win32:MultiPlug-LT [PUP]
141119-1

AVG
Generic_r
2015.0.3277

Bitdefender
Gen:Variant.Adware.MPlug.16
1.0.20.1655

Comodo Security
Application.Win32.Multiplug.CT
20212

Dr.Web
Trojan.Crossrider.36840
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Adware.MPlug.16
9.0.0.4570

ESET NOD32
Win32/AdWare.MultiPlug.CT application
7.0.302.0

F-Secure
Gen:Variant.Adware.MPlug.16
11.2014-27-11_5

G Data
Gen:Variant.Adware.MPlug.16
14.11.24

K7 AntiVirus
Unwanted-Program
13.186.14161

Malwarebytes
PUP.Optional.MultiPlug
v2014.11.27.06

McAfee
MultiPlug-FRO
5600.6933

MicroWorld eScan
Gen:Variant.Adware.MPlug.16
15.0.0.993

NANO AntiVirus
Trojan.Win32.Crossrider.diibxp
0.28.6.63726

Sophos
MultiPlug
4.98

Vba32 AntiVirus
SScope.Adware.MultiPlug
3.12.26.3

File size:
860.5 KB (881,152 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\tuneup+utilities+2014+espanol+final+poderoso+optimizador+para+su+pc.exe

File PE Metadata
Compilation timestamp:
10/12/2012 8:55:53 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:fjlC5V/tuYnMkQEBSp3ROtwRCYpVXfthAeBEvGWZ/gulPEwrt5eV+iDG/:fjlQTRUCSp3EtwRLVP7h2lR4y/

Entry address:
0x3A7E6

Entry point:
E8, 79, 48, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 10, 85, 44, 00, E8, E4, 0F, 00, 00, E8, 46, 4A, 00, 00, 0F, B7, F0, 6A, 02, E8, 0C, 48, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, D6, 08, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Code size:
266.5 KB (272,896 bytes)

The file tuneup+utilities+2014+espanol+final+poderoso+optimizador+para+su+pc.exe has been seen being distributed by the following 3 URLs.