articlespinner.exe

Christina Mailat

The application articlespinner.exe by Christina Mailat has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Christina Mailat  (signed and verified)

Version:
3.0.2.0

MD5:
74908707d2da8a16568c11fdb6688db6

SHA-1:
abb9536e461fa69a1a61e3f96b46159b42fb194b

SHA-256:
0190720dbb31e1547315d9bd154487b3b93b9ffc8133be6a572a0d0112a79f96

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/20/2024 12:39:24 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Fastlink2.Installer.Optional.Meta (L)
15.10.10.11

File size:
1.2 MB (1,206,992 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\submit suite\article spinner\articlespinner.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
3/26/2008 11:48:06 AM

Valid to:
3/26/2010 11:48:06 AM

Subject:
CN=Christina Mailat, OU=Fastlink2, O=Christina Mailat, L=Leverkusen, S=NRW, C=DE

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
4F994EA4A24BABD032D444472ED931A6

File PE Metadata
Compilation timestamp:
6/19/1992 11:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:w5k/I5kzEkK6iuvlvlFci5P9+Ctyd8a0Gkp9pA0bvA:eoTK65vdPlpinM9pA0b4

Entry address:
0x1000

Entry point:
68, 01, 70, 64, 00, E8, 01, 00, 00, 00, C3, C3, 66, D3, A7, 7A, F7, ED, 3B, FD, E3, 2F, 90, 92, DE, 2E, DE, A3, EA, 25, DC, D2, 35, 92, 16, 1B, 59, 70, EA, 10, 9C, A8, 7F, 01, 43, 97, 3A, 52, 8B, 4A, B2, 75, 54, 09, 97, 61, 0F, 37, 48, 5D, 8C, 7F, 25, C9, B3, 41, C1, 90, 19, E9, 2F, 2C, F1, A5, 84, A3, E3, 86, 96, 86, 9F, 74, 17, 97, 98, FA, 49, C2, 89, 5C, 2A, F4, 3F, 7E, 9E, D7, 7A, 85, 07, D6, B3, F3, A1, 9E, E4, 47, 95, 54, D8, AA, A5, 26, 1B, A8, 00, D4, 82, FD, 34, CE, 62, 79, 9C, 28, 30, B1, AE, 27...
 
[+]

Entropy:
7.8124

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
1.7 MB (1,810,944 bytes)

Remove articlespinner.exe - Powered by Reason Core Security