publisher 2016.exe

Astonsoft DeepBurner

MALITEK

The application publisher 2016.exe by MALITEK has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Astonsoft  (signed by MALITEK)

Product:
Astonsoft DeepBurner

Version:
1.9.0.228

MD5:
90ca6fc8918121ca1726d2129f1b4e9e

SHA-1:
0de149e12e5f3dedf8a40a00285f75460995f8e3

SHA-256:
98541b1932dd10bce25b12b04c3c3f062ccf85318c3fd7dea4747e65194c09f6

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 10:05:16 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.InstallMonster (M)
17.3.15.19

File size:
2.7 MB (2,844,600 bytes)

Product version:
1.8

Copyright:
Astonsoft (c) 2002 - 2006

Original file name:
DeepBurner.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\publisher 2016.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/12/2016 12:00:00 AM

Valid to:
3/12/2017 11:59:59 PM

Subject:
CN=MALITEK, O=MALITEK, STREET="Gazovikov, 30, 160", L=Tyumen, S=RU, PostalCode=625022, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00EE626B9BCE0A4EB8C590A5CF0E187D8D

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

Entry address:
0x757000

Entry point:
33, C0, B8, A4, 6F, B5, 00, 83, C0, 70, 50, C3, C2, 08, 00, B9, 20, 10, 00, 00, B8, 01, 00, 00, 00, 8B, 90, 8A, 52, B5, 00, 0F, B6, 12, 80, EA, B1, 83, EA, 07, 0B, D2, 75, 20, 09, A9, 09, E8, 09, A9, 09, E8, 09, A9, 09, E8, 09, A9, 09, E8, 09, A9, 09, E8, 09, A9, 09, E8, 09, A9, 09, E8, 09, A9, 09, E8, E9, 0F, 0B, 00, 00, D7, B8, 54, 05, 83, 68, 37, FF, EB, 10, 7A, 3B, A0, 9D, EB, 00, C3, 9C, EB, 00, FF, 4C, 24, 04, EB, F3, 68, B3, 70, B5, 00, EB, F0, 41, 81, 2C, 24, 44, 42, 17, 96, EB, 0E, D2, C3, 9C, EB...
 
[+]

Code size:
649 KB (664,576 bytes)

Remove publisher 2016.exe - Powered by Reason Core Security