kizoa keygen_10924_i89283406_il345.exe

WinZip

KASHTAN OOO

The executable kizoa keygen_10924_i89283406_il345.exe has been detected as malware by 1 anti-virus scanner. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
WinZip Computing, S.L.  (signed by KASHTAN OOO)

Product:
WinZip

Description:
WinZip Installer

Version:
1.0.28.1

MD5:
900d0b69aaa447e8f9b015576e085cc9

SHA-1:
52e2f6381f8f1d48b180890cf74943944f74e320

SHA-256:
8ab7ef7735339f8271ac1da47d5d8bc359e3afc0fdb0a0221172ca7ea7ca302e

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
5/15/2024 8:46:17 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.2.21.15

File size:
3.3 MB (3,424,144 bytes)

Product version:
1.0.28.1

Copyright:
WinZip Computing

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\new folder\kizoa keygen_10924_i89283406_il345.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
7/4/2015 6:00:00 PM

Valid to:
5/21/2016 5:59:59 PM

Subject:
CN=KASHTAN OOO, O=KASHTAN OOO, L=Naberezhnye Chelny, S=Tatarstan republic, C=RU

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
468BE39F7FCABE2D4D2D070862DD916B

File PE Metadata
Compilation timestamp:
11/23/2015 4:42:49 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x31F970

Entry point:
68, DD, 33, A5, 5C, E8, 36, 5D, FF, FF, CB, 1E, 32, C6, E3, 61, 08, EE, AD, 83, 0D, FF, CE, 39, 84, 46, B8, CD, 39, 19, 87, FF, CD, 39, 6E, 68, 10, 52, 9C, 72, 7A, EE, AD, 3E, BC, DE, CE, 39, 2F, 16, CD, 39, 87, C9, 11, 52, 04, 82, BA, 32, C6, 91, 3B, BA, EE, AD, 61, EF, 62, 10, 52, B2, 28, 40, 31, C6, 9B, 19, A5, 32, C6, 84, 12, 8D, EE, AD, FD, 4F, E3, 11, 52, AD, 13, 14, 31, C6, 9A, 40, 53, 32, C6, 3F, A9, A0, EE, AD, 03, 81, F1, CD, 39, B1, 59, E6, 93, 19, D1, 63, 52, 2E, B8, D5, 40, C6, A0, 4A, 3C, 9C...
 
[+]

Code size:
2.8 MB (2,971,648 bytes)

Remove kizoa keygen_10924_i89283406_il345.exe - Powered by Reason Core Security