ummyvd-web-loader-[129-yt-4og_jjonlc4] - copia.exe

Magicbit, Inc

The application ummyvd-web-loader-[129-yt-4og_jjonlc4] - copia.exe by Magicbit, Inc has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Magicbit, Inc  (signed and verified)

MD5:
c2af7847286f91aaee7b1c3bd43d1ed9

SHA-1:
a8c094a89da59828bb867fff7727a769e4d1dab5

SHA-256:
55fd290afd55466b76eea55fd6b3cd13b2bb2cfd1797a37e2b430dde41258f57

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 5:34:35 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Magicbit.Downloader (M)
17.3.14.1

File size:
401.4 KB (411,008 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ummyvd-web-loader-[129-yt-4og_jjonlc4] - copia.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
4/20/2014 7:00:00 PM

Valid to:
4/20/2017 6:59:59 PM

Subject:
CN="Magicbit, Inc", O="Magicbit, Inc", STREET="901 N. Pitt Street, Suite 325", L=Alexandria, S=VA, PostalCode=22314, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00B5B2652535A2ACE1ACBFF9D5D7816AD4

File PE Metadata
Compilation timestamp:
7/27/2015 4:04:24 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x4CA64

Entry point:
55, 8B, EC, B9, 0A, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, B8, 00, 8A, 44, 00, E8, AC, D1, FB, FF, BF, 10, 40, 45, 00, 33, C0, 55, 68, DE, CD, 44, 00, 64, FF, 30, 64, 89, 20, E8, 0C, 9C, FF, FF, 33, D2, 55, 68, A2, CD, 44, 00, 64, FF, 32, 64, 89, 22, 6A, 00, 68, A4, 74, 44, 00, 6A, 00, 68, F0, CD, 44, 00, A1, 50, 1C, 45, 00, 50, E8, 99, DC, FB, FF, 89, 07, 83, 3F, 00, 0F, 84, C0, 02, 00, 00, B2, 01, B8, 10, CE, 44, 00, E8, 42, A7, FF, FF, 8B, 1F, 8D, 55, D0, B8, 01, 00, 00, 00, E8, AF, 98, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
302.5 KB (309,760 bytes)