candc_generals-torrent.exe

ESET Smart Security

Force LLC

The executable candc_generals-torrent.exe, “Eset GUI Installer” has been detected as malware by 1 anti-virus scanner. This is a self-extracting archive and installer and has been known to bundle potentially unwanted software.
Publisher:
ESET  (signed by Force LLC)

Product:
ESET Smart Security

Description:
Eset GUI Installer

Version:
3.0.695

MD5:
982198a203dcdf09500f20376eed986d

SHA-1:
d22eae00eeb5797d372c839c655c3839e1bbc308

SHA-256:
631160adf90179c0806ba56411297dacdfbdec9779dba3130b378fe6e6550c30

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/27/2024 5:42:56 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.3.15.22

File size:
1.2 MB (1,221,024 bytes)

Product version:
3.0.695

Copyright:
Copyright (c) Eset 1992-2009. All rights reserved.

Trademarks:
NOD, NOD32, AMON, ESET are registered trademarks of ESET.

Original file name:
egui.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\candc_generals-torrent.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/5/2015 4:00:00 AM

Valid to:
5/5/2016 3:59:59 AM

Subject:
CN=Force LLC, O=Force LLC, POBox=119331, STREET=Vernandskogo 29, L=Moscow, S=Moscow, PostalCode=119331, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
7F1FBFEC9EBD89CCB543E7C5811DE223

File PE Metadata
Compilation timestamp:
6/20/1992 2:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xF68F4

Entry point:
E9, A2, 93, FF, FF, 78, 1F, 50, C5, 97, D0, 81, 37, 86, 28, 66, ED, F2, 9C, DA, 8D, CB, 76, 7B, 09, 47, DA, DF, 81, BF, 5A, 5F, E1, 1F, DA, 18, B7, F5, A4, 6A, EF, 97, 6A, 3A, 50, D2, AD, FC, 86, 8B, 05, 3A, 90, 56, D2, 07, B7, B7, 7B, 3D, 18, 27, 01, 03, 32, BA, 42, F1, 2F, BA, F8, 97, 53, 65, 53, E3, C4, 78, BC, 21, 56, 7D, 33, FC, D9, A4, 8B, 17, 94, AF, CA, 38, 1E, 4B, 07, 0C, AC, 72, D2, E8, D5, 03, EE, 1C, 8A, 3A, AE, 38, D8, 94, AA, FC, E6, DB, D1, CE, 6D, 9B, 41, C9, 78, 34, E2, 82, 84, 4E, 65, 62...
 
[+]

Packer / compiler:
tElock 0.99 - 1.0 private

Code size:
648.5 KB (664,064 bytes)

Remove candc_generals-torrent.exe - Powered by Reason Core Security