wifipirate demo (демо_версия).exe

Wi Fi Pirate

ART LODZHYSTІK TOV

The application wifipirate demo (демо_версия).exe, “Программа для взлома Wi FI” by ART LODZHYSTІK TOV has been detected as a potentially unwanted program by 2 anti-malware scanners. It bundles adware offers using the Amonetize, a Pay-Per-Install (PPI) monetization and distribution download manager. The software offerings provided are based on the PC's geo-location at the time of install.
Publisher:
http://wi-fi-pirate.ru  (signed by ART LODZHYSTІK TOV)

Product:
Wi Fi Pirate

Description:
Программа для взлома Wi FI

Version:
13.0.4.2

MD5:
0a073380c58b8fcdfa9f6f5f88a15d8e

SHA-1:
be2dd7d4be9657f3515c30b304661e4efdcea34b

SHA-256:
76d7a798037d77b6266c839c51a4d57453e2cb8d2b268509dc583b96c91a3a16

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
1/6/2025 1:03:36 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/HackTool.BruteForce.GO potentially unsafe application
7.0.302.0

Reason Heuristics
PUP.Amonetize.ARTLODZH (M)
16.3.8.15

File size:
3.9 MB (4,119,336 bytes)

Product version:
13.0.4.2

Copyright:
http://wi-fi-pirate.ru

Trademarks:
http://wi-fi-pirate.ru

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\wi-fi-pirate-13.292\????? ?????\wifipirate demo (????_??????).exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
10/10/2014 3:00:00 AM

Valid to:
10/11/2015 2:59:59 AM

Subject:
CN=ART LODZHYSTІK TOV, O=ART LODZHYSTІK TOV, L=Odessa, S=Odessa, C=UA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
78560400D4F1812C8E1FA6BDC7FC9095

File PE Metadata
Compilation timestamp:
10/18/2014 4:54:06 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:gr3UrMdrwNNgT5VaVjjIYG7Xt1Ip0GP0RP03nPzyT:uCDgT5VaZ27XfIWGcinG

Entry address:
0x1A6F0C

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 44, 39, 5A, 00, E8, 4F, 0B, E6, FF, 8B, 1D, 94, E0, 5A, 00, 8B, 03, E8, E6, 7E, EC, FF, 8B, 03, B2, 01, E8, C5, 9D, EC, FF, 8B, 0D, AC, DE, 5A, 00, 8B, 03, 8B, 15, 60, 01, 5A, 00, E8, E2, 7E, EC, FF, 8B, 0D, 00, DC, 5A, 00, 8B, 03, 8B, 15, E8, 27, 59, 00, E8, CF, 7E, EC, FF, 8B, 0D, 48, E2, 5A, 00, 8B, 03, 8B, 15, 8C, 4B, 59, 00, E8, BC, 7E, EC, FF, 8B, 03, E8, ED, 7F, EC, FF, 5B, E8, AF, E5, E5, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.6 MB (1,724,928 bytes)

Remove wifipirate demo (демо_версия).exe - Powered by Reason Core Security