lbk_20120124132127_multilng.exe

LiberKey Patch

Captel SARL

Publisher:
Liberkey.com  (signed by Captel SARL)

Product:
LiberKey Patch

Version:
1.0.0.7

MD5:
deb9a31b5e32b1d560eb503be82353f7

SHA-1:
38b7d32bebf02cab26b77b3ad1a207217f3c770d

SHA-256:
e9664dc9a4ad8591f26009b0a88148e54ed755b2a1b7bf816a25d438fec416fe

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/19/2024 7:02:51 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.Xema
2015.03.02

Rising Antivirus
PE:Trojan.Bureau!1.6501
23.00.65.15308

File size:
2.9 MB (3,072,120 bytes)

Product version:
1.0.0.7

Copyright:
Copyright © LiberKey.com

Trademarks:
Liberkey.com

Original file name:
LKPatchMaker.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\lbk_20120124132127_multilng.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
1/12/2012 3:23:34 PM

Valid to:
1/12/2013 3:23:34 PM

Subject:
CN=Captel SARL, O=Captel SARL, L=PARIS, S=PARIS, C=FR

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112159049269C0061558353DEF8282742743

File PE Metadata
Compilation timestamp:
1/13/2012 3:41:47 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:OFL9cunyUivhY2sUYnCR82ivFNkHgcqxidMFnoJy8Nj/BtFxVxB:OIuyCgaJ/5UbBZjxV

Entry address:
0x2D78

Entry point:
68, CC, 31, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 89, 70, 36, 5F, C9, C6, A6, 42, A0, 73, 94, 2C, E6, 8A, 39, A7, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 65, 44, 65, 73, 63, 72, 4C, 4B, 50, 61, 74, 63, 68, 00, 00, 00, 00, 00, 01, 00, 07, 00, 78, 58, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 1C, 5A, 40, 00, C4, F0, 42, 00, 02, 00, 00, 00, F8, 2D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, F8, 2D, 40, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
184 KB (188,416 bytes)

Scan lbk_20120124132127_multilng.exe - Powered by Reason Core Security