Download and Sa

Download and Sa

Known Malware

by WebPick Internet Holdings Ltd.

What is Download and Sa?

Download and Sa is software application developed by WebPick Internet Holdings Ltd.. It is most commonly found on computers running Windows 7 with nearly 89.18% of installations running this operating system. Download and Sa's installer is typically 1.00 MB in size and installs around 8 files.

Download and Sa is most popular in the United States with 24.75% of installations residing in this country.

About Download and Sa?

Introducing Download N Save, a browser plugin available for Internet Explorer and Firefox/Chrome that is supported by advertisements, including banner, search, pop-up, pop-under, interstitial, and in-text link advertisements. This plugin is distributed through multiple platforms during installation. The features of this browser extension allow for modification of default or custom settings, including home page and search settings. In some cases, it may also adjust Internet Explorer's load time threshold, place a lock file within Firefox to protect against modifications to its settings by competing software, and disable the browser's Content Security Policy to enable cross site scripting of the plugin.

Multiple virus scanners have detected malware in Download and Sa.

50c146ed32741.ocx (MD5: 582dca19bc19ee74e58625692d055b11) has been flagged by 16 scanners:
Scanner Software Result
Avira AntiVir ADWARE/Adware.Gen
AVG Generic_c.QK
Comodo Security UnclassifiedMalware
Emsisoft Anti-Malware Adware.Win32.MultiPlug.AMN (A)
eSafe Win32.Trojan
ESET-NOD32 Win32/Adware.MultiPlug.E
F-Prot W32/AdAgent.AL.gen!Eldorado
K7 AntiVirus Adware
Kingsoft AntiVirus Win32.Troj.Agent.k.(kcloud)
MicroWorld-eScan ADWARE/Adware.Gen (ES)
NANO AntiVirus Trojan.Win32.MultiPlug.bgdzhz
Trend Micro ADW_MULTIPLUG
TrendMicro-HouseCall ADW_MULTIPLUG
VIPRE Antivirus Trojan.Win32.Generic!BT
Fortinet FortiGate Riskware/MultiPlug
SUPERAntiSpyware Trojan.Agent/Gen-Malfem
506e8e73c4b7b.ocx (MD5: c78c6140cb88ef4dc94f999291bb5ab1) has been flagged by 9 scanners:
Scanner Software Result
Comodo Security UnclassifiedMalware
ESET-NOD32 Win32/Adware.MultiPlug.C
Fortinet FortiGate Riskware/MultiPlug
F-Prot W32/AdAgent.AL.gen!Eldorado
K7 AntiVirus Adware
NANO AntiVirus Trojan.Win32.MultiPlug.bgdzis
SUPERAntiSpyware Trojan.Agent/Gen-Malfem
TrendMicro-HouseCall TROJ_GEN.RCBH1EO
VIPRE Antivirus Trojan.Win32.Generic!BT
5059d3b413cf2.dll (MD5: 633e7480df2a82ffb537684d1c4b5be1) has been flagged by 21 scanners:
Scanner Software Result
Avira AntiVir ADWARE/Adware.Gen
AVG Generic5.KNT
Dr.Web Adware.Plugin.15
Emsisoft Anti-Malware Adware.Win32.MultiPlug.AMN (A)
eSafe Win32.Trojan
ESET-NOD32 Win32/Adware.MultiPlug.B
Fortinet FortiGate Riskware/MultiPlug
Jiangmin Trojan/Genome.dbov
Malwarebytes PUP.DownloadnSave
McAfee Generic PUP.x!brx
McAfee-GW-Edition Generic PUP.x!brx
NANO AntiVirus Trojan.Win32.Plugin.xnzwc
Trend Micro TROJ_SPNR.14LM12
TrendMicro-HouseCall TROJ_SPNR.14LM12
VIPRE Antivirus Trojan.Win32.Generic!BT
Comodo Security UnclassifiedMalware
F-Prot W32/AdAgent.AL.gen!Eldorado
K7 AntiVirus Adware
Kingsoft AntiVirus Win32.Troj.Agent.k.(kcloud)
MicroWorld-eScan ADWARE/Adware.Gen (ES)
SUPERAntiSpyware Trojan.Agent/Gen-Malfem
508efb4f394ab.ocx (MD5: d637295a8426c7c4a8e9ef3e584839a2) has been flagged by 25 scanners:
Scanner Software Result
Agnitum Outpost Adware.MultiPlug
Avira AntiVir ADWARE/Adware.Gen
Clam AntiVirus Win.Adware.Multiplug-1
Commtouch SDK W32/FastSave.FQMW-6395
Comodo Security UnclassifiedMalware
eSafe Win32.Trojan
ESET-NOD32 Win32/Adware.MultiPlug.D
Fortinet FortiGate Adware/MultiPlug
F-Prot W32/FastSave.A
K7 AntiVirus Riskware
NANO AntiVirus Trojan.Win32.MultiPlug.bgdzmf
Sophos FastSave
Trend Micro ADW_MULTIPLUG
TrendMicro-HouseCall ADW_MULTIPLUG
AVG Generic5.KNT
Dr.Web Adware.Plugin.15
Emsisoft Anti-Malware Adware.Win32.MultiPlug.AMN (A)
Jiangmin Trojan/Genome.dbov
Malwarebytes PUP.DownloadnSave
McAfee Generic PUP.x!brx
McAfee-GW-Edition Generic PUP.x!brx
VIPRE Antivirus Trojan.Win32.Generic!BT
Kingsoft AntiVirus Win32.Troj.Agent.k.(kcloud)
MicroWorld-eScan ADWARE/Adware.Gen (ES)
SUPERAntiSpyware Trojan.Agent/Gen-Malfem

Software Details

URL:
https://download-n-save.com
Support:
–
Installation path:
C:\ProgramData\download and sa
Uninstaller:
"C:\ProgramData\Download and Sa\uninstall.exe" /path=C:\ProgramData\Download and Sa
Size:
1.00 MB
Language:
English

Download and Sa Executable Details

Primary executable:
508efb4f394ab.ocx
Name:
Download and Sa
Path:
C:\ProgramData\download and sa\508efb4f394ab.ocx
MD5:
d637295a8426c7c4a8e9ef3e584839a2
SHA-1:
–
SHA-256:
–
Files installed by Download and Sa
File Type Filename MD5
EXE
602aa39f9ab3b6685bee71c67dc485c5
EXE
c45b33894072b750813171183bed24c0
CRX
557ffaad42589b61f84afaf4372a5006
OCX
582dca19bc19ee74e58625692d055b11
OCX
c78c6140cb88ef4dc94f999291bb5ab1
OCX
4886db975f6abfb0d61d97103f8361c4
DLL
633e7480df2a82ffb537684d1c4b5be1
OCX
d637295a8426c7c4a8e9ef3e584839a2