latale.osr

Gamefactory, Inc

The file latale.osr by Gamefactory, Inc has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Gamefactory, Inc  (signed and verified)

MD5:
a9d7a441a3e47bddb53796deb4f5d9ec

SHA-1:
43d1965453c966d5b8cdc2abea4634590b72a4fc

SHA-256:
99836eff53955db24ea8e9367823e1b728e639ac0cf552e707d9dc752d9bd995

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
4/25/2024 1:23:56 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Gamefact (M)
16.6.24.18

File size:
482.6 KB (494,136 bytes)

Common path:
C:\Program Files\ogplanet\uslauncher\latale.osr

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
10/27/2011 11:37:19 AM

Valid to:
10/26/2014 2:13:42 AM

Subject:
CN="Gamefactory, Inc", OU=OGPlanet, O="Gamefactory, Inc", L=Torrance, S=CA, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
4E865D9503B8C3

File PE Metadata
Compilation timestamp:
8/28/2013 5:16:16 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:SG4cI0dI0BSD6qs+lTfm888888888888W88888888888T:+0dI0BSDbl6

Entry address:
0x49838

Entry point:
55, 8B, EC, 83, C4, C0, B8, 34, 5C, 44, 00, E8, 60, 02, FC, FF, E8, B3, C4, FB, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.9963

Developed / compiled with:
Microsoft Visual C++

Code size:
287 KB (293,888 bytes)

Remove latale.osr - Powered by Reason Core Security