SpyShelter.exe

SpyShelter

Datpol Janusz Siemienowicz

Publisher:
Datpol Janusz Siemienowicz  (signed and verified)

Product:
SpyShelter

Description:
SpyShelter GUI

Version:
9,4,0,0

MD5:
86a2d2e5a1991430aaf9d7ce2165c84f

SHA-1:
ff89e328f81e2b6b7413bf78348893198c91e41c

SHA-256:
53ead8db98c0a4a797567ea907d14eca50880df6962162987fed3f194f2f5876

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/4/2024 5:14:03 PM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
PAK_Generic.009
7.2.290

Trend Micro
PAK_Generic.009
10.465.17

File size:
2.7 MB (2,880,864 bytes)

Product version:
9,4,0,0

Original file name:
SpyShelter.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\spyshelter personal free\spyshelter.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
8/26/2014 1:14:04 PM

Valid to:
12/8/2014 5:09:30 PM

Subject:
E=biuro@datpol.com, CN=Datpol Janusz Siemienowicz, O=Datpol Janusz Siemienowicz, L=Olkusz, S=Malopolskie, C=PL

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121B2A7BEEB0FC74F69CC135D6161C7095F

File PE Metadata
Compilation timestamp:
10/7/2014 6:11:54 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:TWQKD+7CZMzjM+wziy+5J+Xu7k+NsGayiCfbCP8ts8xT54H0NsjY45c67aYQs:2+4cMvzj1+S9yY8tfCH0NsEix7aE

Entry address:
0x4339A7

Entry point:
9C, C7, 04, 24, F9, 44, B6, A6, E9, 23, D8, 24, 00, F5, 80, 7F, FF, 00, 60, E9, 87, 55, 0A, 00, 00, 00, 53, 65, 74, 54, 65, 78, 74, 43, 6F, 6C, 6F, 72, 00, 00, 00, 56, 61, 72, 69, 61, 6E, 74, 49, 6E, 69, 74, 00, 30, 6F, A4, 18, CB, 5D, 31, BE, EC, 97, D2, DC, C0, CF, 82, 2F, F0, B6, 7D, D3, 4E, 3B, 28, 6C, 45, D0, 73, 2D, 46, 56, 49, 21, D0, 81, E0, 21, 00, 65, 99, 9C, 62, C7, 22, EC, F4, 04, 3D, 3C, 8C, 33, 4A, 7D, AD, 24, CF, 2C, C7, DE, B6, CC, 5E, A0, A8, 50, 03, 75, 59, D0, 2C, C0, 53, 09, D5, 5C, D2...
 
[+]

Code size:
4 MB (4,161,536 bytes)

Startup File (User Run Once)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce

Name:
SpyShelter

Command:
C:\Program Files\spyshelter personal free\spyshelter.exe


Scan SpyShelter.exe - Powered by Reason Core Security