fifa_07_91727359.exe

Adamant-Soft

The executable fifa_07_91727359.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
Adamant-Soft  (signed and verified)

MD5:
0f299e57450738906e40e339f60942b0

SHA-1:
45d281d1e1348f5013a1eb96e1d281029ac359f5

SHA-256:
d3b98b2f5b9e1f2f4479b9b69cb8a69c01721dd72d45780485ccda2b6d259ef6

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
5/25/2024 10:55:09 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.2.25.19

File size:
2.2 MB (2,326,584 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\fifa_07_91727359.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/10/2016 6:00:00 AM

Valid to:
6/11/2017 5:59:59 AM

Subject:
CN=Adamant-Soft, O=Adamant-Soft, STREET="d. 21 kv. 13, Kv-L 4-I,", L=Shelekhov, S=Irkutskaya obl., PostalCode=666034, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00C13C041367A0ED781C5567593398BC54

File PE Metadata
Compilation timestamp:
6/20/1992 4:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x128D5C

Entry point:
55, 8B, EC, 83, C4, F0, B8, F4, 89, 52, 00, E8, 24, E0, ED, FF, A1, CC, C5, 52, 00, 8B, 00, E8, 14, F9, F3, FF, 8B, 0D, 5C, C0, 52, 00, A1, CC, C5, 52, 00, 8B, 00, 8B, 15, 08, FB, 4C, 00, E8, 14, F9, F3, FF, 8B, 0D, 3C, C8, 52, 00, A1, CC, C5, 52, 00, 8B, 00, 8B, 15, 78, F8, 4C, 00, E8, FC, F8, F3, FF, 8B, 0D, D4, C2, 52, 00, A1, CC, C5, 52, 00, 8B, 00, 8B, 15, 98, 85, 52, 00, E8, E4, F8, F3, FF, A1, CC, C5, 52, 00, 8B, 00, E8, 58, F9, F3, FF, E8, 07, B8, ED, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.2 MB (1,211,904 bytes)

Remove fifa_07_91727359.exe - Powered by Reason Core Security