rublik.exe

Rublik.com CA

Publisher:
Rublik.com CA  (signed and verified)

MD5:
891aa4b7bf6d893536b889152593f5e9

SHA-1:
59d9c431d75788a7bf3623e79c75839d205e7bc4

SHA-256:
a835bda4435946800a46828f4b0274acc18a3997cd45c1928de403ad448c5c08

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 10:14:49 AM UTC  (today)

Scan engine
Detection
Engine version

Baidu Antivirus
Trojan.Win32.Rublik
4.0.3.14311

Dr.Web
Tool.BtcMine.124
9.0.1.070

ESET NOD32
Win32/Rublik (variant)
8.9122

Trend Micro House Call
TROJ_GEN.F47V0719
7.2.70

File size:
1.4 MB (1,420,288 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\rublik\rublik.exe

Digital Signature
Signed by:

Authority:
Rublik.com CA

Valid from:
8/7/2011 5:55:09 PM

Valid to:
8/4/2021 5:55:09 PM

Subject:
CN=www.rublik.com, O=Rublik.com CA, S=Some-State, C=RU

Issuer:
CN=www.rublik.com, O=Rublik.com CA, S=Some-State, C=RU

Serial number:
00E17BBDC5AA90D19D

File PE Metadata
Compilation timestamp:
7/10/2013 4:38:29 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

CTPH (ssdeep):
24576:ZH6lNhCvtmF/b1J94vxns/spKveWe8npvEF+9q5XZjot7CrFajAC5+74Bq/e3qwp:ZH6lNhCvtmF/b1J4xs/spKveWe8nyF+V

Entry address:
0x12A0

Entry point:
55, 89, E5, 83, EC, 08, C7, 04, 24, 02, 00, 00, 00, FF, 15, 40, F0, 52, 00, E8, 98, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 8B, 0D, 64, F0, 52, 00, 89, E5, 5D, FF, E1, 8D, 74, 26, 00, 55, 8B, 0D, 58, F0, 52, 00, 89, E5, 5D, FF, E1, 90, 90, 90, 90, 55, 89, E5, 83, EC, 18, C7, 04, 24, 00, 10, 4E, 00, E8, BA, 6B, 06, 00, 52, 85, C0, 74, 65, C7, 44, 24, 04, 13, 10, 4E, 00, 89, 04, 24, E8, AD, 6B, 06, 00, 83, EC, 08, 85, C0, 74, 11, C7, 44, 24, 04, 08, D0, 52, 00, C7, 04, 24, A0, 86, 51, 00, FF, D0, 8B...
 
[+]

Packer / compiler:
MingWin32

Code size:
866.5 KB (887,296 bytes)

Scan rublik.exe - Powered by Reason Core Security