CertInstaller.exe

Aloaha Cert Installer

Wrocklage Intermedia GmbH

Publisher:
Aloaha Limited  (signed by Wrocklage Intermedia GmbH)

Product:
Aloaha Cert Installer

Description:
Aloaha Certificate Installer

Version:
3.06.0472

MD5:
605006975f17a8b8fbb76e9d7863d6b0

SHA-1:
e046ffe3f5307da9a5ac6fa4fdb961a780478ec3

SHA-256:
0b03e6c5ed35939e78c124ac1f1253e36c10489cfa0ddfd85d00404d7de0689f

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/19/2024 2:16:19 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
BACKDOOR.Trojan
9.0.1.029

McAfee
Artemis!605006975F17
5600.6505

File size:
4.4 MB (4,586,960 bytes)

Product version:
3.06.0472

Copyright:
Wrocklage Intermedia GmbH

Trademarks:
Aloaha

Original file name:
CertInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\common files\aloaha\certinstaller.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/21/2010 1:59:52 PM

Valid to:
7/22/2011 1:59:50 PM

Subject:
E=info@aloaha.com, CN=Wrocklage Intermedia GmbH, OU=Aloaha Software, O=Wrocklage Intermedia GmbH, L=Ibbenbueren, S=Nordrhein-Westfalen, C=DE

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000129F46F7ABB

File PE Metadata
Compilation timestamp:
12/10/2010 12:30:46 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:Izahsib9lBmlr7/FY88mSipoKEhTqVbbZ:cahVmlr7/FY88mSipoKIgb1

Entry address:
0x29890

Entry point:
68, 38, A9, 42, 00, E8, EE, FF, FF, FF, 00, 00, 50, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, 4B, 81, A8, AD, C3, 4B, 25, 4E, B8, C0, 00, 35, BA, 7D, CF, 0D, 00, 00, 00, 00, 00, 00, 4E, 00, 54, 00, 0A, 44, 69, 6D, 20, 64, 41, 6C, 6F, 61, 68, 61, 43, 65, 72, 74, 49, 6E, 73, 74, 61, 6C, 6C, 65, 72, 00, 43, 6C, 65, 61, 00, 0D, 0A, 53, 65, 74, 20, 74, C0, 00, 00, 00, 98, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 20, 00, 00, 00, 21, 46, 0A, 2D, 12, D1, 8C, 40, A0, AA, 7E, 65, 9A, DC, 7A, 9B...
 
[+]

Entropy:
6.0641

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
4 MB (4,149,248 bytes)

Windows Firewall Allowed Program
Name:
C:\Program Files (x86)\Common Files\aloaha\CertInstaller.exe


Scan CertInstaller.exe - Powered by Reason Core Security