2912be34.exe

SOFTWARE CENTER INFORMATICA LTDA - ME

The executable 2912be34.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
SOFTWARE CENTER INFORMATICA LTDA - ME  (signed and verified)

MD5:
d2c9efc328437b7e2ff58e7930f0d572

SHA-1:
bf5252905fca6144f0290d6570887359088b15da

SHA-256:
ee46e053002d75b7b5369873bf75b0b549f5981beebff8b2aa86443777fd290c

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/23/2024 10:35:26 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.12.17.12

File size:
9.9 MB (10,427,744 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\2912be34.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/24/2015 2:34:16 PM

Valid to:
4/24/2016 2:34:16 PM

Subject:
CN=SOFTWARE CENTER INFORMATICA LTDA - ME, OU=TI, O=SOFTWARE CENTER INFORMATICA LTDA - ME, L=JUQUITIBA, S=SAO PAULO, C=BR

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121E4364E01A7278CB5E2EEB812C5E418BA

File PE Metadata
Compilation timestamp:
1/15/2010 9:27:14 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.24

Entry address:
0x121CD0E

Entry point:
9C, C7, 04, 24, B8, F9, EB, 2C, 68, D1, 57, F1, C4, C7, 04, 24, DD, 3B, EB, 99, 60, 9C, C6, 44, 24, 0C, B6, 8D, 64, 24, 24, E9, 39, CE, 94, 00, 89, DF, F9, F6, D8, F8, 30, E8, B0, 2E, 66, 85, FD, 9C, 66, 0F, A3, DC, F8, F2, AE, FF, 34, 24, E9, F1, 63, F6, FF, 2F, B5, 48, E4, A9, 60, 73, 9D, 35, 7B, B8, 98, BB, 7F, 94, 8C, FF, 73, E8, 40, B7, 6D, AD, 1F, 60, AE, BD, A1, 39, C7, 4C, 9C, 9F, 9B, 5A, 5F, 55, 4D, F2, CA, 83, 33, DB, 89, F5, A2, AA, 7A, F7, ED, F3, 5A, 56, 1B, 27, B5, 30, 3B, 7F, A0, 18, 4D, BA...
 
[+]

Entropy:
7.8060  (probably packed)

Code size:
29.5 KB (30,208 bytes)

Remove 2912be34.exe - Powered by Reason Core Security