ancpeaiz.exe

Messenger Du Sexe

Lanet Ltd

The file ancpeaiz.exe by Lanet has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. While running, it connects to the Internet address vip1.carpediem.fr on port 80 using the HTTP protocol.
Publisher:
Lanet  (signed by Lanet Ltd)

Product:
Messenger Du Sexe

Version:
1.0.0.7

MD5:
766b3596656034f422e813f111bf8529

SHA-1:
d59f6e7eb1b87bca179bc152246912ce96973205

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/26/2024 7:16:12 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Lanet (L)
17.2.14.8

File size:
146.1 KB (149,640 bytes)

Copyright:
Lanet

Trademarks:
Messenger Du Sexe is a trademark of Lanet company

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\ancpeaiz.exe.part

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
6/13/2016 2:00:00 AM

Valid to:
6/14/2019 1:59:59 AM

Subject:
CN=Lanet Ltd, O=Lanet Ltd, L=Sofia, S=Sofia, C=BG, SERIALNUMBER=203609282, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.3=BG

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA - G2, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
4358006905A03AB196FFBEFFD207DC8F

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to vip1.carpediem.fr  (91.226.182.241:80)

Remove ancpeaiz.exe - Powered by Reason Core Security