set_lgslxwdq.exe

All Team Incorporated

The executable set_lgslxwdq.exe has been detected as malware by 1 anti-virus scanner. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
Smooth Detailed Installation  (signed by All Team Incorporated)

Product:
Smooth Detailed Installation

Version:
68.8.8.6961

MD5:
395026c2441265736de7335ba039a8ca

SHA-1:
b4f8f538df259f43ecd039671f6101ea41b690f5

SHA-256:
8a78e7b185dde4e17ed0fd9f31ebe6587aad3b16c1fd2ac23b9be57ea902022a

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/23/2024 9:50:44 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.2.24.22

File size:
1.1 MB (1,140,488 bytes)

Product version:
68.8.8.6961

Copyright:
Copyright (C) 2015

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\set_lgslxwdq.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
5/19/2016 10:51:38 PM

Valid to:
5/19/2017 10:51:38 PM

Subject:
CN=All Team Incorporated, O=All Team Incorporated, L=San Francisco, S=California, C=US

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
00A3C7D36051C78896

File PE Metadata
Compilation timestamp:
12/4/2015 2:21:47 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x417A

Entry point:
E8, D1, E4, 07, 00, E9, CB, D8, 07, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 44, 24, 08, 56, 8B, 74, 24, 08, 8B, D6, E8, F0, A3, 02, 00, 8B, 08, 8B, 54, 24, 10, 3B, 51, 18, 73, 08, 8B, 41, 08, 8D, 04, D0, EB, 05, E8, 38, 3F, 03, 00, 8B, 4E, 14, 85, C0, 74, 0C, 8B, 10, 89, 11, 8B, 40, 04, 89, 41, 04, EB, 07, C7, 41, 04, FF, FF, FF, FF, 83, 46, 14, 08, 8B, 46, 14, 3B, 46, 18, 72, 08, 8B, CE, 5E, E9, 2A, C9, 02, 00, 5E, C3, CC, CC, CC, CC, CC, CC, CC, CC, 53, 56, 8B, 74, 24, 0C, 57, 33, FF, 57...
 
[+]

Entropy:
7.4751

Code size:
524.5 KB (537,088 bytes)

Remove set_lgslxwdq.exe - Powered by Reason Core Security