PrivacyWinner.exe

Privacy Winner

ALIKET SOFTWARE CO., LTD.

The application PrivacyWinner.exe by ALIKET SOFTWARE CO. has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
PrivacyWinner.com  (signed by ALIKET SOFTWARE CO., LTD.)

Product:
Privacy Winner

Version:
5, 6, 9, 18

MD5:
c211b2fce781d4b89ffd5d454ebe5502

SHA-1:
1c550ca745e049a8869b0dd09060d877d94e792c

SHA-256:
40fedef3944c35d6311e276db9cd0106ec76eb2a4dca47f1ab4ff29f0c0618a6

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/23/2024 12:08:04 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Optional.ALIKETSO
16.10.9.2

File size:
5.6 MB (5,834,296 bytes)

Product version:
5, 6, 9, 18

Copyright:
Copyright (C) 2008 PrivacyWinner.com.All Rights Reserved.

Trademarks:
Privacy Winner

Original file name:
PrivacyWinner.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\privacy winner\privacywinner.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
11/27/2008 8:00:00 AM

Valid to:
11/28/2010 7:59:59 AM

Subject:
CN="ALIKET SOFTWARE CO., LTD.", OU=Secure Application Development, O="ALIKET SOFTWARE CO., LTD.", L=BEIJING, S=BEIJING, C=CN

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
6C4B7FCD34A45D21B17CD1FC8F8559A8

File PE Metadata
Compilation timestamp:
9/19/2010 9:08:54 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:31GIzVPm9DQb53oD9gB3zEVTdXqh3/J8BhYhXX:31GIzVPm9DQloD9gB3zEVTdXqh3/J8B8

Entry address:
0x439A2

Entry point:
55, 8B, EC, 6A, FF, 68, 68, C2, 44, 00, 68, F4, 3E, 44, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, 5F, 57, FF, 15, E4, 87, 44, 00, 59, 83, 0D, 0C, B3, 45, 00, FF, 83, 0D, 10, B3, 45, 00, FF, FF, 15, E0, 87, 44, 00, 8B, 0D, 00, B3, 45, 00, 89, 08, FF, 15, DC, 87, 44, 00, 8B, 0D, FC, B2, 45, 00, 89, 08, A1, D8, 87, 44, 00, 8B, 00, A3, 08, B3, 45, 00, E8, E0, 04, 00, 00, 39, 1D, 90, A3, 45, 00, 75, 0C, 68, F0, 3E, 44, 00, FF, 15...
 
[+]

Entropy:
6.9660

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
284 KB (290,816 bytes)

Remove PrivacyWinner.exe - Powered by Reason Core Security