Environment.Identification.dll

Environment.Identification

Stronghold.com

The module Environment.Identification.dll by Stronghold.com has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program Super Backup Online Backup by Stronghold.com, LLC.
Publisher:
Stronghold.com  (signed and verified)

Product:
Environment.Identification

Version:
1.0.0.0

MD5:
6d1348535ffe93a79e1220ee83902fb0

SHA-1:
38f18be7675977918c514174aeda2e2913056ff4

SHA-256:
488c05dc091fc3e177b12433193fe203c57f0e7f4a0a7f267fe20231dfff0205

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/19/2024 12:09:44 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Stronghold.Z
14.5.1.9

File size:
14.8 KB (15,200 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2012

Original file name:
Environment.Identification.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Language Neutral

Common path:
C:\Program Files\super backup online backup\environment.identification.dll

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/9/2013 6:00:00 PM

Valid to:
3/11/2015 6:59:59 PM

Subject:
CN=Stronghold.com, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Stronghold.com, L=Newport Beach, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
563F8FD97216572975CF2CE95F9D059E

File PE Metadata
Compilation timestamp:
6/26/2013 1:33:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
192:PklQ1jDEvLWkiJ1Ihd2z/4ZCrGk0k6jhoU4J76yMrj6L1r6fMRq7+v1r9ZCspE+7:PI0AvyJKE2CrGzFjhoz7JMCMnjeMb9a

Entry address:
0x3DBE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 10, 00, 00, 00, 18, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 01, 00, 00, 00, 30, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.1827

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
7.5 KB (7,680 bytes)

The file Environment.Identification.dll has been discovered within the following program.

Super Backup Online Backup  by Stronghold.com, LLC
Publisher's description - “Super Backup makes backup easy with intelligent system scans that locate and secure your important files, even if they are buried deep in your system. With Super Backup, you never need to fuss with complicated setup screens.”
stronghold.com
58% remove it
 
Powered by Should I Remove It?

Remove Environment.Identification.dll - Powered by Reason Core Security