Strongvault.exe

Strongvault Online Backup

Strongvault Online Storage LLC

The application Strongvault.exe, “This installer database contains the logic and data required to install Strongvault Online Backup.” by Strongvault Online Storage has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
Strongvault Online Storage LLC  (signed and verified)

Product:
Strongvault Online Backup

Description:
This installer database contains the logic and data required to install Strongvault Online Backup.

Version:
2.5.0.7

MD5:
64f188f3a44b3386f152486cf317ccb5

SHA-1:
577ff6a120d5ae5d700b4f86fd90b3407a5658e6

SHA-256:
7c245a48ac2df54bbc8c0432eebadf1a46b5e8356883f30992cb48238ac1d285

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/25/2024 6:08:36 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.6.3.14

File size:
15.7 MB (16,494,512 bytes)

Product version:
2.5.0.7

Copyright:
Copyright (C) Strongvault Online Storage LLC

Original file name:
Strongvault.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\strongvault.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/12/2013 6:00:00 PM

Valid to:
2/13/2014 5:59:59 PM

Subject:
CN=Strongvault Online Storage LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Strongvault Online Storage LLC, L=newport beach, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
48A7245B07D6ADFDDD6F3FAC024F13AF

File PE Metadata
Compilation timestamp:
11/29/2012 2:55:28 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:+5n+1DdInjl9iudC2HzYqi9DT0bhrtjXf:Q7jl9k2TYqidMjXf

Entry address:
0xAE649

Entry point:
E8, 25, B9, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 56, 8B, F0, 33, DB, 3B, F3, 75, 1E, E8, CF, 44, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, CB, EB, FF, FF, 83, C4, 14, 8B, C6, E9, C2, 00, 00, 00, 57, 39, 5D, 0C, 77, 1E, E8, AB, 44, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, A7, EB, FF, FF, 83, C4, 14, 8B, C6, E9, 9D, 00, 00, 00, 33, C0, 39, 5D, 14, 66, 89, 06, 0F, 95, C0, 40, 39, 45, 0C, 77, 09, E8, 7C, 44, 00, 00, 6A, 22, EB, CF, 8B, 45, 10, 83, C0, FE, 83, F8, 22, 77...
 
[+]

Entropy:
7.9521  (probably packed)

Code size:
899 KB (920,576 bytes)

Remove Strongvault.exe - Powered by Reason Core Security