plants-vs-zombies- torrentino.exe

Onlain Sekyuriti Sistems, OOO

The executable plants-vs-zombies- torrentino.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
Onlain Sekyuriti Sistems, OOO  (signed and verified)

MD5:
aa9f44186801e7d840ebeda797a14d25

SHA-1:
3b23d46bf2d2d51926c050841f09d91449d1b6ce

SHA-256:
0644c7018274bd3621e9110efd8a21488ea49328b252aa6359b0b3d8f708fcd8

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
2/27/2025 9:57:07 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.2.21.1

File size:
423.9 KB (434,080 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\plants-vs-zombies- torrentino.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
3/26/2014 3:00:00 AM

Valid to:
3/27/2015 2:59:59 AM

Subject:
CN="Onlain Sekyuriti Sistems, OOO", O="Onlain Sekyuriti Sistems, OOO", STREET="12 Komn 42, ul.Vrubelya", L=Moscow, S=Moscow region, PostalCode=125080, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
38AA823949978CC988A90C3D6FDCCF0F

File PE Metadata
Compilation timestamp:
4/7/2014 4:21:23 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
4.0

Entry address:
0x4B36

Entry point:
85, 0D, A5, E3, 40, 00, 1B, 7C, 24, 14, F7, D3, 81, E1, A2, 10, 11, 91, C1, E1, 1E, 33, 05, 86, 6C, 42, 00, 90, C1, ED, 15, 81, CA, D7, 6E, 52, E1, C1, EE, 1E, BF, 8F, 25, 55, 4E, 09, E5, 2B, 4C, 24, 0C, C1, DB, 17, 81, C7, A1, 27, EB, B1, FC, C1, D2, 11, 4A, 39, EA, 4F, C1, D3, 1F, 29, E3, 81, DA, 86, D1, EB, CB, 47, C1, D5, 00, 23, 74, 24, F0, 87, D5, 0F, B6, 0F, 43, 46, 45, 43, 81, C1, EB, DD, BF, 93, 21, DB, FD, 81, C1, 45, 6E, 80, 6C, 1B, 74, 24, F8, FC, 87, D6, 8B, 5C, 24, EC, 8A, 01, 45, 3B, 5C, 24...
 
[+]

Code size:
352 KB (360,448 bytes)

Remove plants-vs-zombies- torrentino.exe - Powered by Reason Core Security