allmyapps.exe

Allmyapps

The application allmyapps.exe by Allmyapps has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Allmyapps  (signed and verified)

MD5:
0ea8f324788b34abb7d64470653dc2d3

SHA-1:
117f5cd953debd2b454b68d226e08ff50ba7517a

SHA-256:
dc265024371e7a51b3f8e131db6be9b1c554b9fa15b58b396a69c05cb3f64df2

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/23/2024 5:04:29 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.10.2.9

File size:
6.3 MB (6,573,048 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\allmyapps\allmyapps.exe

Digital Signature
Signed by:

Authority:
Allmyapps

Valid from:
9/28/2010 2:56:10 PM

Valid to:
9/28/2011 2:56:10 PM

Subject:
E=contact@allmyapps.com, CN=api.allmyapps.com, O=Allmyapps, L=Paris, S=Some-State, C=FR

Issuer:
E=contact@allmyapps.com, CN=api.allmyapps.com, O=Allmyapps, L=Paris, S=Some-State, C=FR

Serial number:
00C2FB651E206DABD0

File PE Metadata
Compilation timestamp:
7/19/2013 10:15:54 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
49152:KkSUY1y4+yy+MsiYGUi5P0KfpM6oy6ac7MELkm+cB/AMYgj+HibVsiR8ZxvDeRog:KYyothm5/X0K1mID8ap

Entry address:
0x76C30

Entry point:
FE, C8, F6, DF, 8D, 2D, A4, B0, 32, 59, 3B, CB, 00, CF, BA, 63, 19, 1C, A3, C6, C2, D9, 32, F4, E8, 16, 00, 00, 00, 8D, 2D, C2, 97, 97, 86, B8, F4, 7D, 1C, 44, BF, C8, 5D, 03, 00, 81, EF, FF, 00, 03, 00, 0A, F0, 87, D2, 85, E8, EB, 06, 8D, 05, DE, 2F, D8, EA, B9, 3F, 98, 00, 00, 87, D0, 81, F1, E3, B9, 00, 00, 86, D3, 81, C1, 8C, 0F, 00, 00, 84, E3, 2B, E9, 18, D7, 5A, 0F, 6E, C2, 81, FE, B1, CF, 00, 00, 71, 06, 0F, AF, EB, 0F, B7, CF, 05, 76, CD, AE, 6B, BA, 04, 00, 00, 00, 8D, 2D, 08, 93, 16, FA, 6B, D2...
 
[+]

Code size:
550 KB (563,200 bytes)

Windows Firewall Allowed Program
Name:
allmyapps


Remove allmyapps.exe - Powered by Reason Core Security