electrum-ltc-2.cryptomachine.com

Internet Widgits Pty Ltd

The file electrum-ltc-2.cryptomachine.com by Internet Widgits Pty has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Internet Widgits Pty Ltd  (signed and verified)

MD5:
969c7a5dc4346edf6bd8da21cf0538bf

SHA-1:
f50ca58ffb8704eb1ba58a52dd5ef3669b201c30

SHA-256:
f3631e0e5c6938e5500eeb551530a1995f28e5fefdfa1144b89b90f67484744e

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/24/2024 5:24:44 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.InternetWidgitsPty
15.6.13.9

File size:
1.2 KB (1,208 bytes)

Common path:
C:\users\{user}\appdata\roaming\electrum-ltc\certs\electrum-ltc-2.cryptomachine.com

Digital Signature
Authority:
Internet Widgits Pty Ltd

Valid from:
4/23/2015 5:35:11 AM

Valid to:
4/20/2025 5:35:11 AM

Subject:
CN=electrum.cryptomachine.com, O=Internet Widgits Pty Ltd, S=WA, C=US

Issuer:
CN=electrum.cryptomachine.com, O=Internet Widgits Pty Ltd, S=WA, C=US

Serial number:
00AD7EBBDA822533F1

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
24:Lr5ybklWhBbklT320NLpIwebBMrAEWOCK8doldV3Bwv9xPbnCOA:Lr5ybkCbkwyp+MEEW8lL3C9ox

Remove electrum-ltc-2.cryptomachine.com - Powered by Reason Core Security