StrongholdAntiMalware.exe

Stronghold AntiMalware

Security Stronghold LLC

The application StrongholdAntiMalware.exe by Security Stronghold has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Stronghold AntiMalware’. This file is typically installed with the program Stronghold AntiMalware by Security Stronghold which is a potentially unwanted software program.
Publisher:
Security Stronghold  (signed by Security Stronghold LLC)

Product:
Stronghold AntiMalware

Version:
1.0.0.14

MD5:
f19b5417bdf3e84cfff4232b4baa279d

SHA-1:
b5ee97ad396865f624076adf2dfc40eb2d09f20d

SHA-256:
37f6d3c1f39b4af5ded1a1a7ac1b7a12eb067ec067add308a55698ce74430963

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 4:32:50 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.12.8.18

File size:
6.3 MB (6,653,600 bytes)

Product version:
1.0.0.14

Copyright:
Copyright 2003-2014 Security Stronghold

Original file name:
StrongholdAntiMalware.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\stronghold antimalware\strongholdantimalware.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
11/14/2014 10:59:35 AM

Valid to:
1/11/2016 1:49:56 PM

Subject:
E=manager@securitystronghold.com, CN=Security Stronghold LLC, O=Security Stronghold LLC, L=Astrakhan, C=RU

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121429E972F949C65D48148980A12CEE76F

File PE Metadata
Compilation timestamp:
11/28/2014 2:00:33 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:148xSRrITRo1TEWnJxEaDqXL9dY6JnPGpcEDlb6E:G8xSRrIRo1vK4qnPPEBbl

Entry address:
0x4CEF18

Entry point:
55, 8B, EC, B9, 08, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, 57, B8, 18, BA, 8B, 00, E8, 63, D4, B3, FF, 33, C0, 55, 68, AD, F5, 8C, 00, 64, FF, 30, 64, 89, 20, E8, 34, 5C, B3, FF, 85, C0, 7E, 32, 8D, 55, EC, B8, 01, 00, 00, 00, E8, 83, 5C, B3, FF, 8B, 45, EC, BA, C8, F5, 8C, 00, E8, 32, A0, B3, FF, 75, 16, B8, EC, F5, 8C, 00, E8, A6, C9, FE, FF, A1, C0, 6A, 91, 00, 8B, 00, E8, 36, 18, C9, FF, E8, A1, 99, FD, FF, A1, C0, 6A, 91, 00, 8B, 00, E8, 89, 15, C9, FF, A1, C0, 6A, 91, 00, 8B, 00, 33, D2...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
4.8 MB (5,038,592 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Stronghold AntiMalware

Command:
C:\Program Files\stronghold antimalware\strongholdantimalware.exe


The file StrongholdAntiMalware.exe has been discovered within the following program.

Stronghold AntiMalware  by Security Stronghold
Publisher's description - “Stronghold Antivirus is a lightweight and user-friendly antivirus and antimalware for everyday use both at home and in the office. Unlike other antiviruses it doesn't consume a lot of resources, it doesn't confuse you with difficult to understand windows and complex options.”
www.securitystronghold.com/stronghold-antivirus
65% remove it
 
Powered by Should I Remove It?

Remove StrongholdAntiMalware.exe - Powered by Reason Core Security