52fe8729.exe

SOFTWARE CENTER INFORMATICA LTDA - ME

The executable 52fe8729.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
SOFTWARE CENTER INFORMATICA LTDA - ME  (signed and verified)

MD5:
0e78c47270ae8ffd9b059623a7d8daad

SHA-1:
936e2bcc6d20066c91f0ce00ee524512b3242da1

SHA-256:
7cef68bcf1d4d14ae92d5f6d83570087c7b3c5639931345fc65ff1ddbd8d8e2b

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
4/13/2025 5:34:04 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.8.5.4

File size:
1 MB (1,057,632 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\39474bcc\52fe8729.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/24/2015 2:34:16 PM

Valid to:
4/24/2016 2:34:16 PM

Subject:
CN=SOFTWARE CENTER INFORMATICA LTDA - ME, OU=TI, O=SOFTWARE CENTER INFORMATICA LTDA - ME, L=JUQUITIBA, S=SAO PAULO, C=BR

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121E4364E01A7278CB5E2EEB812C5E418BA

File PE Metadata
Compilation timestamp:
5/18/2015 11:16:38 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.24

CTPH (ssdeep):
24576:sP+L8r2I8xdXJdRasF3GC+OK8DUKPIuho0w/w+aoIVnuLMfqf:sPNaIYJDTGC+O/oKPDo0l+quLMG

Entry address:
0x3238CF

Entry point:
60, E8, 76, DC, FF, FF, 53, 48, 45, 4C, 4C, 33, 32, 2E, 44, 4C, 4C, 00, 6D, 73, 76, 63, 72, 74, 2E, 64, 6C, 6C, 00, 1F, 68, 70, 76, 5E, 6C, 78, 8E, A6, A9, 9F, AF, 89, 92, 86, 9C, 94, 9A, AE, 0F, ED, F5, DB, E3, C5, C5, D7, E4, EC, F8, 00, FE, EA, F7, 73, 59, 36, 7A, A5, 53, 98, 60, 7F, 75, 82, A6, BA, F5, 03, 10, 53, 61, CB, CD, 69, F8, 8A, BA, 9E, 94, 03, 29, 1C, B7, 10, B8, 40, 36, B7, CC, FB, C9, D6, EB, F5, CF, FC, CC, C2, EE, E4, BC, F3, E9, E6, E6, F2, E2, D8, DC, D2, CE, E5, BF, CC, F9, 35, 6A, 1F...
 
[+]

Packer / compiler:
ASPack v1.08.04

Code size:
25 KB (25,600 bytes)

Remove 52fe8729.exe - Powered by Reason Core Security