pushbullet_client.exe

Pushbullet

Pushbullet Inc

The executable pushbullet_client.exe has been detected as malware by 3 anti-virus scanners.
Publisher:
Pushbullet Inc  (signed and verified)

Product:
Pushbullet

Version:
1.0.0.0

MD5:
b2b6579a259d6a15a8caf2e8c10112a0

SHA-1:
6b8aef1c081d71c96c5427e70c713e349c3e9d71

SHA-256:
a3eb829c064ba26ca61a2c86a2ac140e98fe61110265b7e20537404472688a92

Scanner detections:
3 / 68

Status:
Malware

Analysis date:
11/27/2024 6:30:24 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Crypt-SKC [Trj]
160503-1

F-Prot
W32/Neshta.A!Generic
4.6.5.141

Microsoft Security Essentials
Threat.Undefined
1.223.2192.0

File size:
1.5 MB (1,523,512 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2014

Original file name:
pushbullet_client.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\pushbullet\bin\pushbullet_client.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
4/9/2015 7:00:00 AM

Valid to:
4/9/2016 6:59:59 AM

Subject:
CN=Pushbullet Inc, O=Pushbullet Inc, STREET="508 Octavia St #6", L=San Francisco, S=CA, PostalCode=94102, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
5BAC363877CCF3001DAF4E733318A87E

File PE Metadata
Compilation timestamp:
1/27/2016 4:20:54 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:+2w8y/OFKOoTjQTVswPKaB03nxHxrbZiJVx589E2eB9wFitGRah9iSYwFitGBahJ:8yQM3PTa3nxRrbZiV58+GqTgGaJ

Entry address:
0x14146E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
1.2 MB (1,308,160 bytes)

Remove pushbullet_client.exe - Powered by Reason Core Security