dreamx.exe

SAPO

The executable dreamx.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
SAPO  (signed and verified)

Version:
11.7.32.1

MD5:
b25dea344c279e548c862b6077598b7d

SHA-1:
ef624c3575c71c26e4d8ebabc900389a6f341aa8

SHA-256:
63171af72053dbb7d4eefa027d7b0e21e354217b082dcdabab2a27d2e34639dd

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
5/6/2024 2:26:41 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.10.6.6

File size:
15.7 MB (16,425,104 bytes)

Product version:
11.7.32.1

Original file name:
sgt.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\roaming\dreamx.exe

Digital Signature
Signed by:

Authority:
SAPO

Valid from:
6/5/2015 2:08:35 PM

Valid to:
6/5/2016 2:08:35 PM

Subject:
E=cmd@sapo.pt, CN=SAPO.PT, OU=SAPO Division of Protocol, O=SAPO, L=Opalo, S=Jobila, C=AS

Issuer:
E=cmd@sapo.pt, CN=SAPO.PT, OU=SAPO Division of Protocol, O=SAPO, L=Opalo, S=Jobila, C=AS

Serial number:
00A7AB2CD21ECC7345

File PE Metadata
Compilation timestamp:
6/11/2015 6:55:37 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
80.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:t7oL40g7MpC9ll2Febghv61ACpllhvYZPGcQmDCDNGBTaJ8/6E+gFbKpfbtvbiKx:p

Entry address:
0xFAAEDE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
15.7 MB (16,420,864 bytes)

Remove dreamx.exe - Powered by Reason Core Security