winclearup2.2.0.0625.exe

Spigot, Inc.

This component is part of the Spigot browser add-on, a web browser addition that is designed to modify the core search provider in order to redirect search queries through partner portals. The application winclearup2.2.0.0625.exe by Spigot has been detected as adware by 3 anti-malware scanners. The program is a setup application that uses the Spigot Setup installer.
Publisher:
Spigot, Inc.  (signed and verified)

MD5:
dad2e713255181a52a749c7df99972dd

SHA-1:
3ad507b88f341453ebb8983f412f63bb9414899f

SHA-256:
906b81284bd5081adf7185353878c315693b86bf451749be9d72fb60353d0623

Scanner detections:
3 / 68

Status:
Adware

Analysis date:
11/30/2024 8:27:11 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Threat.Undefined
9.0.1.05190

ESET NOD32
Win32/Spigot.A potentially unwanted application
7.0.302.0

Reason Heuristics
PUP.Spigot.R
14.12.26.21

File size:
225.3 KB (230,656 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Spigot Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\winclearup2.2.0.0625.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
11/24/2014 7:00:00 PM

Valid to:
11/22/2017 7:00:00 AM

Subject:
CN="Spigot, Inc.", O="Spigot, Inc.", L=Incline Village, S=Nevada, C=US, PostalCode=89451, STREET="554 Mays Blvd. #10-456", SERIALNUMBER=E0212222011-9, OID.1.3.6.1.4.1.311.60.2.1.2=Nevada, OID.1.3.6.1.4.1.311.60.2.1.3=US, OID.2.5.4.15=Private Organization

Issuer:
CN=DigiCert EV Code Signing CA (SHA2), OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0EEB37DB6AF3800DB7C33E1C9A910B04

File PE Metadata
Compilation timestamp:
12/5/2009 5:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:yQIURTXJqIHVY2BNjcjcLJ2C4Qr5iQVuTJdD29vogl:ysVVYe3dvP5i1b29vogl

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.0407

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

Remove winclearup2.2.0.0625.exe - Powered by Reason Core Security