Threat Database Adware Shopping Blast

Shopping Blast

By GoldSparrow in Adware

Threat Scorecard

Popularity Rank: 14,966
Threat Level: 100 % (High)
Infected Computers: 5,744
First Seen: April 27, 2015
Last Seen: May 12, 2026
OS(es) Affected: Windows

The security experts classify Shopping Blast as a Potentially Unwanted Program (PUP) with an adware functionality. The application claims to enhance the on-line shopping experience of the user by providing him with the best deals and coupons out there. It is doubtful that people will indeed save money due to this program, but the presence of many ads is guaranteed. They can be seen as pop-ups, banners or hyperlinked words. Shopping Blast may replace your default homepage and may also manipulate the search results. These techniques try to promote partner sites and attempt to make you a client of various trading platforms. Their legitimacy cannot be verified, and you should abstain from buying anything even if the product seems to be a good bargain. You may notice that the ads become more and more accurate as the time passes, and this is not a coincidence ‒ the adware carefully monitors your browsing history and reacts accordingly. The constantly popping up ads may be very irritating, but are harmless by themselves. If you click on them, however, this may change as they may lead to corrupt sites. You should consider deleting Shopping Blast as it cannot help you in any way.

Analysis Report

General information

Family Name: Stop.ZZLA Ransomware
Signature status: No Signature

Known Samples

MD5: 6f2a981521f048ff6f97d4930e539438
SHA1: cdff7fe22cce82dc967192ac89c144f155c4612c
SHA256: 03CDE589D40496C6A41F864185B9B1E23651FA387430DEDBC4F00B598F013B56
File Size: 190.46 KB, 190464 bytes
MD5: c604590e22f3e9dd78b66a6fdb6536ca
SHA1: f9de2e02a8893b828f13da2a1c8efb822c3f6465
SHA256: B7CC30B79845448804952D5B7C81ED54024B5CAB8181BC7F7C388F517A06E008
File Size: 372.74 KB, 372736 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File has exports table
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
Show More
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
File Version 2.9.0.87
Product Version 2.9.0.87

File Traits

  • 2+ executable sections
  • HighEntropy
  • No Version Info
  • x86

Block Information

Total Blocks: 431
Potentially Malicious Blocks: 6
Whitelisted Blocks: 369
Unknown Blocks: 56

Visual Map

? 0 ? ? ? ? ? ? ? ? ? 0 x 0 0 0 0 0 0 0 0 0 0 ? x ? ? ? 0 0 ? ? 0 0 0 0 0 ? 0 0 x 0 0 0 x 0 0 0 0 0 0 0 x 0 ? ? ? 0 ? 0 0 0 ? 0 0 ? 0 0 0 0 0 ? ? 0 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? 0 ? ? 0 ? ? 1 0 0 1 0 0 0 0 0 1 1 0 1 0 0 0 0 1 0 1 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 1 1 0 0 0 0 1 0 0 1 1 0 0 1 0 0 0 0 0 2 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 1 0 0 1 1 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 1 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 2 3 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 1 0 0 1 1 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 2 2 0 0 1 0 0 0 1 1 1 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 2 1 0 x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Trending

Most Viewed

Loading...