EVGENIY NESTEROV – 24% Detection Rate At VirusTotal

Welcome! Short on time today, but I just wanted to give you the heads up on a publisher called EVGENIY NESTEROV.

This is how EVGENIY NESTEROV appears when running the file:

EVGENIY NESTEROV publisher

The certificate is issued by Certum Code Signing CA. Evgeniy appears to be located in Russia.

EVGENIY NESTEROV digital signature

So, why am I writing about the EVGENIY NESTEROV file? Check out what the anti-malware software report about the file:

EVGENIY NESTEROV virustotal

Avast reports the fileĀ as Win32:FakeDownload-F [PUP], Ikarus detects it as PUA.Win32.InstalleRex, Sophos calls it MultiPlug and Tencent classifies it as Trojan.Win32.Qudamah.Gen.6 are a few of the detection names for [share_ebook] MediaWiki Administrators’ Tutorial Guide [ReUpload].exe.

Did you also find a EVGENIY NESTEROV download? What kind of download was it?

Thanks for reading.