optin.php

Traffic Space, LLC

The file optin.php by Traffic Space has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is also typically executed from an Internet Explorer cache folder.
Publisher:
Traffic Space, LLC  (signed and verified)

MD5:
6c455f6ee94390cdd3b2149e9a571d21

SHA-1:
de754fe4040a6f268ca04a65117d414ff62e9b6d

SHA-256:
4edd9b70b63b83eb04e5c205d972c200c477d150312b8a409f14856ffff74ec9

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/11/2025 10:01:12 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.TrafficS (M)
16.3.26.11

File size:
457 KB (467,944 bytes)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\optin.php

Digital Signature
Authority:
Symantec Corporation

Valid from:
3/16/2015 4:00:00 PM

Valid to:
4/15/2016 3:59:59 PM

Subject:
CN="Traffic Space, LLC", O="Traffic Space, LLC", L=Woodcliff Lake, S=New Jersey, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
6C4417841FFCEC12D6EFE825A6723A4E

File PE Metadata
Compilation timestamp:
6/19/1992 2:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:DsFoj4u3sWHF+XF5ODt5FIMwuLWqAvp1RAo:oOcJM5uMBLuWo

Entry address:
0x32AB4

Entry point:
55, 8B, EC, 83, C4, F4, E8, 81, 06, FD, FF, E8, 9C, 19, FD, FF, E8, 9B, 43, FD, FF, E8, AE, AC, FD, FF, E8, 8D, AD, FD, FF, E8, E4, CC, FD, FF, E8, C7, 30, FE, FF, E8, 8E, CA, FE, FF, E8, A1, D6, FE, FF, 6A, 00, A1, 28, 46, 43, 00, 8B, 40, 20, 50, E8, 3D, 20, FD, FF, A1, 28, 46, 43, 00, E8, D7, C0, FE, FF, B9, 64, 46, 43, 00, BA, CC, 01, 42, 00, A1, 28, 46, 43, 00, E8, D3, C0, FE, FF, A1, 28, 46, 43, 00, E8, 59, C1, FE, FF, E8, 80, 14, FD, FF, 8B, E5, 5D, C3, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.5316

Developed / compiled with:
Microsoft Visual C++

Code size:
199 KB (203,776 bytes)

Remove optin.php - Powered by Reason Core Security