dll_files_fixer_3_1.exe

Internet Explorer

Consortium Group ltd

While the file properties state the file is developed by 'Microsoft Corporation', this is not the case and it is designed just to look like a legitimate Microsoft system file. The application dll_files_fixer_3_1.exe, “Instalador de complementos de Internet Explorer” by Consortium Group ltd has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Microsoft Corporation  (signed by Consortium Group ltd)

Product:
Internet Explorer

Description:
Instalador de complementos de Internet Explorer

Version:
11.00.9600.16428 (winblue_gdr.131013-1700)

MD5:
53579ab5f7048a3183d2fd2cead675c9

SHA-1:
ea2273e0abac1e992a22f864d50bfa56e1e8cd52

SHA-256:
f951e818dece255ac2fefc6c63bfb9c38afafce9d989f210ca3de4de89a9793a

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 6:02:39 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.InstallCube (M)
17.2.10.0

File size:
3.5 MB (3,652,728 bytes)

Product version:
11.00.9600.16428

Copyright:
© Microsoft Corporation. Todos los derechos reservados.

Original file name:
ieinstal.exe.mui

File type:
Executable application (Win32 EXE)

Language:
Spanish

Common path:
C:\users\{user}\downloads\dll_files_fixer_3_1.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/7/2016 9:00:00 PM

Valid to:
2/25/2016 8:59:59 PM

Subject:
CN=Consortium Group ltd, O=Consortium Group ltd, STREET="3RD FLOOR, C&h TOWERS,", STREET=CORNER OF GR.MARLBOROUGH UN GR.GEORGE STR., L=ROSEAU, S=ROSEAU, PostalCode=00152, C=DM

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00BA40E256E4EC90E1BD4D33A9DCE047D0

File PE Metadata
Compilation timestamp:
1/15/2016 12:51:39 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

Entry address:
0x3521F0

Entry point:
55, 8B, EC, 6A, FF, 68, 98, 9A, 75, 00, 68, 48, 34, 75, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, E0, 70, 75, 00, 33, D2, 8A, D4, 89, 15, 88, A7, 75, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 84, A7, 75, 00, C1, E1, 08, 03, CA, 89, 0D, 80, A7, 75, 00, C1, E8, 10, A3, 7C, A7, 75, 00, 33, F6, 56, E8, A3, 10, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 6E, 0D, 00, 00, FF, 15, CC, 70, 75, 00, A3, B4, AC, 75, 00, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
3.3 MB (3,497,984 bytes)

Remove dll_files_fixer_3_1.exe - Powered by Reason Core Security