unitywebplayer3d.exe

IT Proekt Invest, TOV

The application unitywebplayer3d.exe by IT Proekt Invest, TOV has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install.
Publisher:
IT Proekt Invest, TOV  (signed and verified)

Version:
2.5.9.5

MD5:
1ab695ff0f850908c7ac9322c32e9114

SHA-1:
cb135579a7d6b36d8622ff7c2327bf5188d41ede

SHA-256:
93a6ef85bc3b1a408ce0a0ddae6ca0b4b82cfaae53662e79f2e94ac1aa8e31f6

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/27/2024 5:53:27 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Amonetize (M)
17.3.3.6

File size:
5.4 MB (5,624,800 bytes)

Product version:
2.5.9.5

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\unitywebplayer3d.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/20/2016 3:00:00 AM

Valid to:
3/18/2017 2:59:59 AM

Subject:
CN="IT Proekt Invest, TOV", OU=IT, O="IT Proekt Invest, TOV", STREET="prosp. Vozzyednannya, 9", L=Kiev, S=Kiev, PostalCode=02160, C=UA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00BFE3D72E3FB3938D9D5EBA447C681BDA

File PE Metadata
Compilation timestamp:
3/7/2011 10:36:03 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
12.0

Entry address:
0x4D2160

Entry point:
55, 8B, EC, 81, EC, 90, 07, 00, 00, 0F, B7, 85, 44, FE, FF, FF, 3D, 17, 47, 00, 00, 7F, 7E, 83, 7D, A8, 00, 73, 5C, 8B, 4D, 9C, 81, E9, 59, 95, 00, 00, 89, 8D, 70, FF, FF, FF, BA, 7E, 24, 00, 00, 66, 89, 95, F0, FE, FF, FF, C6, 85, 17, FF, FF, FF, 5C, 8B, 85, 6C, FF, FF, FF, 2D, E3, 6E, 00, 00, 23, 45, F0, 66, 89, 85, 2C, FE, FF, FF, 8B, 4D, 94, 81, E9, BA, 34, 00, 00, C1, E9, 09, 66, 89, 8D, D0, FE, FF, FF, C7, 85, 6C, FF, FF, FF, 00, 00, 00, 00, 8B, 55, C8, 89, 55, BC, EB, 1A, C7, 45, EC, AF, ED, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
5 MB (5,263,872 bytes)

Remove unitywebplayer3d.exe - Powered by Reason Core Security