StrongholdAntiMalware.exe

Stronghold AntiMalware

Security Stronghold LLC

The application StrongholdAntiMalware.exe by Security Stronghold has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Stronghold AntiMalware’. This file is typically installed with the program Stronghold AntiMalware by Security Stronghold which is a potentially unwanted software program.
Publisher:
Security Stronghold  (signed by Security Stronghold LLC)

Product:
Stronghold AntiMalware

Version:
1.0.0.15

MD5:
fac66bb04e7297ed23bce9b83bda5846

SHA-1:
892d7598c3956014a534eef733f4b65c5466f206

SHA-256:
e5ab3e61bfc76d4a5d4671c803263399d32bf0dc15418c841c732f50c4366576

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 5:03:46 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.8.23.16

File size:
6.3 MB (6,650,528 bytes)

Product version:
1.0.0.15

Copyright:
Copyright 2003-2014 Security Stronghold

Original file name:
StrongholdAntiMalware.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\stronghold antimalware\strongholdantimalware.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/14/2014 2:59:35 AM

Valid to:
1/11/2016 5:49:56 AM

Subject:
E=manager@securitystronghold.com, CN=Security Stronghold LLC, O=Security Stronghold LLC, L=Astrakhan, C=RU

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121429E972F949C65D48148980A12CEE76F

File PE Metadata
Compilation timestamp:
12/12/2014 6:58:29 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:kciBCB8EBe3SGMwnal0awEYrd9Y650eoN3EDbq6i:NiBCB8Ke3SHmzEA0eopESd

Entry address:
0x4CDF18

Entry point:
55, 8B, EC, B9, 08, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, B8, B4, AE, 8B, 00, E8, 64, E4, B3, FF, 33, C0, 55, 68, 71, E5, 8C, 00, 64, FF, 30, 64, 89, 20, E8, 09, AB, FD, FF, A1, C0, 5A, 91, 00, 8B, 00, E8, C5, 25, C9, FF, A1, C0, 5A, 91, 00, 8B, 00, 33, D2, E8, AF, 1F, C9, FF, A1, C0, 5A, 91, 00, 8B, 00, BA, 8C, E5, 8C, 00, E8, 9E, 1F, C9, FF, 8D, 45, EC, E8, D6, 69, CA, FF, 8D, 45, EC, BA, C8, E5, 8C, 00, E8, 21, AE, B3, FF, 8B, 45, EC, E8, A5, A2, D9, FF, 84, C0, 0F, 84, 5F, 02, 00, 00, B8...
 
[+]

Entropy:
6.6359

Developed / compiled with:
Microsoft Visual C++

Code size:
4.8 MB (5,035,520 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Stronghold AntiMalware

Command:
C:\Program Files\stronghold antimalware\strongholdantimalware.exe


The file StrongholdAntiMalware.exe has been discovered within the following program.

Stronghold AntiMalware  by Security Stronghold
Publisher's description - “Stronghold Antivirus is a lightweight and user-friendly antivirus and antimalware for everyday use both at home and in the office. Unlike other antiviruses it doesn't consume a lot of resources, it doesn't confuse you with difficult to understand windows and complex options.”
www.securitystronghold.com/stronghold-antivirus
65% remove it
 
Powered by Should I Remove It?

Remove StrongholdAntiMalware.exe - Powered by Reason Core Security