editor_5583.exe (not detected)

File is already submitted to the Virus Lab.

Downloadable at: cd n.shrufastcaldl.us/nsi/nsis-2.46/editor_5583.exe
Remove Space behind second letter cd n to cdn…

Virustotal: https://www.virustotal.com/de/file/8a269441b2942414b9f3a34046c67da50592eba5bdbe59768b93c1ac27a467a8/analysis/1362235911/

It installs Babylon Toolbar and Reg Clean Pro.
Please read License Agreement.

There are no Alerts given (Reputation or any other alerts)

Do you have PUP detection enabled…??

There is a lot of bundled stuff with that install … So it is very probably a PUP alert

Yes its enabled.

The new Evo technic isnt detecting it.

As well it has some False positives. (Installer from Panda Cloud Cleaner)

I will report it soon.

The press article is here: http://www.avast.com/de-de/pr-protection-at-your-fingertips-the-new-avast-8

I suspect the panda cleaner issue relate to unencrypted virus signatures, so not really an FP when you have a signature based scanner looking for signatures.

Its an Cloud Scanner.

I think it has no Signatures.

Believe it or not it does, if it were a true cloud scanner why is the actual installation so large. We have seen this befor with the panda cloud AV that purports to be compatible with your AV.

If this is only a cleaner as you stated earlier, it has to know what it is looking for to clean, for that it would require a signature/s.

OK. Thanks.

We will see if AVAST will detect the file. (editor_5583.exe)

I had sent anothr file to AVAST for analysis.

You can find it below in viruses and worms.

This is not detected yet.

Just installed it on my VM and then installed Avast 8 free

Run the browser cleanup and got the following

Evo does not detect PUP (so far for me PUP have only been detected by signs).