minecraft mod.exe

CamStudio Producer

USPEH

The executable minecraft mod.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
CamStudio Group  (signed by USPEH)

Product:
CamStudio Producer

Version:
1.0.0.0

MD5:
26681b8dacbb2027ae34bbc6ff28330b

SHA-1:
63410d23e2c708d22c4ab8af353ee363c4e400b7

SHA-256:
1a79bc4b61fb9352eeddd2a8880880014cc552a1f0b57aa5fbfdd6ffb96ffc7c

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
12/26/2024 8:12:18 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.11.28.16

File size:
853.9 KB (874,424 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2002 RenderSoft Software and Web Publishing, Copyright © 2008 CamStudio Group & Contributors

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\minecraft mod.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/7/2015 3:00:00 AM

Valid to:
7/7/2016 2:59:59 AM

Subject:
CN=USPEH, O=USPEH, STREET="ul. Pereulok Jenergetikov, 22, 1", L=Omsk, S=Omsk Region, PostalCode=644050, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
3487172EA401A09F762EFB31F444EAD0

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:lviQRlc0NYZ0etRpP/ODOX9UXXQGHiBk/rxcwB3SpQwJa:JiQRllYXRIE1G3zxcwB3RN

Entry address:
0x9AB4C

Entry point:
9C, 60, C7, 44, 24, 20, C6, 7F, 3A, 5D, 9C, 9C, E9, 1B, 36, 00, 00, E9, 6A, 50, FF, FF, E8, AC, 8A, FF, FF, 80, FC, 2E, 68, 86, 16, 79, D9, 52, FF, 74, 24, 08, C2, 0C, 00, 00, 00, 43, 61, 6E, 63, 65, 6C, 49, 6F, 00, F9, 45, 79, AB, F5, 56, F2, F8, CB, EA, A2, A8, 46, F2, A2, AC, 52, BB, D3, 27, 83, 0D, 53, 54, 96, 1F, 27, 73, CD, AE, 20, 29, 4D, 5F, B1, B2, FC, E5, 15, A5, AD, 33, B9, 5B, 16, 44, 92, 3C, 21, 88, A3, F5, DE, 0E, 3A, 5E, F8, EF, FD, F7, 17, 47, 73, 6B, EE, C0, 74, C0, F4, EC, 9C, E8, 3E, 45...
 
[+]

Code size:
449 KB (459,776 bytes)

Remove minecraft mod.exe - Powered by Reason Core Security