i6738665.exe

SOFTWARE CENTER INFORMATICA LTDA - ME

The executable i6738665.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
SOFTWARE CENTER INFORMATICA LTDA - ME  (signed and verified)

MD5:
04e9abdcffeb0cb645fb26b5d086ed7e

SHA-1:
054170d1385417cebe77d2a7ad0900fd28cb166b

SHA-256:
b424acb3370549aafa7bcffd88eae632301924d57d86b4c6f0cceb84c179d0b6

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/23/2024 10:43:33 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.12.17.12

File size:
9.9 MB (10,423,648 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\i6738665.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/24/2015 2:34:16 PM

Valid to:
4/24/2016 2:34:16 PM

Subject:
CN=SOFTWARE CENTER INFORMATICA LTDA - ME, OU=TI, O=SOFTWARE CENTER INFORMATICA LTDA - ME, L=JUQUITIBA, S=SAO PAULO, C=BR

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121E4364E01A7278CB5E2EEB812C5E418BA

File PE Metadata
Compilation timestamp:
11/11/2005 7:29:03 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.24

Entry address:
0x1183E8B

Entry point:
9C, E9, 76, 86, FF, FF, 9C, 8D, 64, 24, 04, 0F, 83, 4D, 45, 00, 00, F6, D3, D3, D9, 66, 21, EF, 89, C3, D3, E9, 89, C7, D2, C1, F6, DD, C0, DD, 02, E8, 81, 65, FF, FF, 8A, 16, E8, 47, 44, 00, 00, B4, 7F, CE, 5D, DD, 88, 1E, AD, 1F, E6, 28, 8E, 6F, 92, 5B, B6, C2, EE, 07, 0E, D0, C2, 3C, 7A, 9C, 02, E3, 02, E3, 06, EF, 3A, B3, 42, F9, 57, 4B, 2B, 17, 77, 52, E2, CD, 43, 16, 25, 8F, E7, 83, 3A, D8, C9, B9, 20, 06, A1, 78, 4B, 04, 1F, 8F, B2, B7, ED, C4, F9, FC, 08, DB, 1A, 3D, 0D, 90, 07, 82, 65, D9, E9, 1E...
 
[+]

Entropy:
7.8063  (probably packed)

Code size:
29.5 KB (30,208 bytes)

Remove i6738665.exe - Powered by Reason Core Security