googolp.exe

Googol+

AtelierWeb Software

The executable googolp.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
Atelier Web  (signed by AtelierWeb Software)

Product:
Googol+

Version:
2.0.0.50

MD5:
1d8578f83bb19592552b54805249fc17

SHA-1:
c98720560a55b1d216315ea9c8809dd7df073795

SHA-256:
7f580b44487f7ee912d8be0c1fe5abaf9b29d27f464808aaa6f257c019a290f5

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
4/26/2024 9:54:37 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Threat.Win.Reputation.IMP
16.7.27.6

File size:
546.8 KB (559,928 bytes)

Product version:
2.0.0.0

Copyright:
(c) 2007-2011 AtelirWeb Software

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\atelier web\googolp 2.01\googolp.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
11/30/2009 1:00:00 AM

Valid to:
12/1/2011 12:59:59 AM

Subject:
CN=AtelierWeb Software, O=AtelierWeb Software, STREET="Manuel Jose da Silva, 22", L=Lisbon, S=na, PostalCode=1900-316, C=PT

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
0082ABAFA886859B4A967BB501AA86EB4C

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:EGin9bbJTpaq/asrbIEGpzK6FSkFvwOqJgV+Qwcdyv47rxkb/:zy9OMrM5pzvwOqJ7ekr

Entry address:
0x1000

Entry point:
68, 01, 20, 47, 00, E8, 01, 00, 00, 00, C3, C3, 29, 5C, 40, B1, E3, C6, AE, 7E, 5B, 2F, FE, 43, 1B, 65, 16, 75, E2, 7A, 6B, B1, E3, DF, CA, 64, C4, C2, CF, 21, B0, CA, E6, AC, C8, 31, B8, AD, E3, 2F, D8, 23, 92, CB, DB, CA, C8, 85, 00, EB, 3C, 15, C0, 29, 4C, D5, 78, 73, 35, 34, 86, 04, A4, 1D, 58, 74, E6, 21, A6, CB, 04, 82, D2, FA, 8C, 1A, D8, 92, 5B, EA, C2, 19, E8, 69, 9C, 1C, 7C, 2D, F1, 3E, 8F, A3, 58, FB, B7, AA, 33, 91, 59, 75, C4, DD, CD, 51, 5F, 4E, E3, 35, 84, 29, 74, AE, E6, F4, A1, C0, D6, A3...
 
[+]

Entropy:
7.8904

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
354.5 KB (363,008 bytes)

Remove googolp.exe - Powered by Reason Core Security