unzipper-1.0-setup.exe

Click Start Media

The application unzipper-1.0-setup.exe by Click Start Media has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
Click Start Media  (signed and verified)

Product:
Click Start Media

Version:
15.7.1.8591

MD5:
aa29088687370df75127ad1643a1a68f

SHA-1:
b70b865d527dc3d2caab413d6d59ae870b415ee0

SHA-256:
cda63e53870ef17fc2216d263843733577c1767a0e54a4425340db083fc91084

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/24/2024 6:37:10 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.ClickStartMedia.Installer (M)
15.11.27.22

File size:
2.1 MB (2,250,728 bytes)

Product version:
15.7.1.8591

Copyright:
Copyright (C) 2015

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\low\content.ie5\{random}\unzipper-1.0-setup.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
11/6/2015 6:06:38 PM

Valid to:
11/6/2016 6:06:38 PM

Subject:
CN=Click Start Media, O=Click Start Media, L=Oakland, S=California, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
008B1BC042761E6262

File PE Metadata
Compilation timestamp:
11/1/2014 8:20:03 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:ucV1el+n2v78PbYir3JirNJIVmEqVVQiNpe5jbV0Opw8yI3+l1D:5V1egqkb1roSVmE0q043yI3+vD

Entry address:
0x1DBB

Entry point:
E8, C0, C0, 00, 00, E9, E4, B8, 00, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 3C, 51, 41, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 56, 8B, 74, 24, 08, 68, 00, 01, 00, 00, 6A, 01, 56, E8, 6C, B8, 00, 00, 33, C0, 89, 46, 21, 89, 46, 25, 89, 46, 29, 89, 46, 2D, 89, 46, 31, 89, 46, 35, 6A, 41, 89, 46, 39, 8D, 46, 3E, 6A, 00, 50, E8, 48, B8, 00, 00, 68, 00, 01, 00, 00, C6, 46, 09, 03, C6, 46, 20, 03, C6, 46, 0D, 02, 8B, 74, 24, 28, 68, FF, 00, 00, 00, 56, E8, 28, B8, 00, 00, B0, 0A, 88, 46, 41...
 
[+]

Entropy:
7.9934  (probably packed)

Code size:
54 KB (55,296 bytes)

Remove unzipper-1.0-setup.exe - Powered by Reason Core Security