ogpsteam.exe

Gamefactory, Inc

The application ogpsteam.exe by Gamefactory, Inc has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Gamefactory, Inc  (signed and verified)

MD5:
d29ad766500c1a971cb59fed1ca63321

SHA-1:
4cc2180a6e03987f8970594282dd0341cf436faa

SHA-256:
ae80053aea3554b926a67de88b712f722e310bf940c9002d0e8b17ab02b1b2c1

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/24/2024 12:18:03 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.3.2.6

File size:
3.4 MB (3,555,904 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\steam\steamapps\downloading\328060\ogpsteam.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
10/27/2011 12:37:19 AM

Valid to:
10/25/2014 3:13:42 PM

Subject:
CN="Gamefactory, Inc", OU=OGPlanet, O="Gamefactory, Inc", L=Torrance, S=CA, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
4E865D9503B8C3

File PE Metadata
Compilation timestamp:
10/16/2014 1:24:01 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x1C1574

Entry point:
55, 8B, EC, 83, C4, E4, 33, C0, 89, 45, E8, 89, 45, E4, 89, 45, EC, B8, EC, 61, 5B, 00, E8, 6D, 94, E4, FF, 33, C0, 55, 68, 5B, 16, 5C, 00, 64, FF, 30, 64, 89, 20, 8D, 55, EC, B8, 01, 00, 00, 00, E8, 3E, 30, E4, FF, 8B, 45, EC, BA, 74, 16, 5C, 00, E8, 79, 60, E4, FF, 75, 49, 6A, 40, 68, 8C, 16, 5C, 00, 8D, 55, E4, B8, 1E, 00, 00, 00, E8, FF, 26, E5, FF, FF, 75, E4, 68, 24, 18, 5C, 00, 8D, 45, E8, BA, 03, 00, 00, 00, E8, 2E, 5F, E4, FF, 8B, 45, E8, E8, EA, 59, E4, FF, 8B, D0, B9, 2C, 18, 5C, 00, A1, E0, 95...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.7 MB (1,834,496 bytes)

Remove ogpsteam.exe - Powered by Reason Core Security