s_inst.exe

Digital Pine, LLC

The application s_inst.exe by Digital Pine has been detected as adware by 3 anti-malware scanners.
Publisher:
Digital Pine, LLC  (signed and verified)

MD5:
b2733763d14a60b6ef6c63a54145e479

SHA-1:
bbff9da527528b229328d6f8287e10e8bf538246

SHA-256:
14115b551ea95b76cc1a6b1ee5b6ec360a4b55ca1fa542cdeae35ec90e4a9d89

Scanner detections:
3 / 68

Status:
Adware

Analysis date:
4/23/2024 11:25:05 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
MalSign.Generic
2015.0.3340

Norman
Malware
11.20140925

Reason Heuristics
PUP.DigitalPine.G
14.9.25.14

File size:
290.7 KB (297,680 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\newsi_204\s_inst.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
6/17/2013 3:00:00 AM

Valid to:
3/30/2016 3:00:00 PM

Subject:
CN="Digital Pine, LLC", O="Digital Pine, LLC", L=Moscow, C=RU

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0C6DFC094A13DA127C9280621A006F48

File PE Metadata
Compilation timestamp:
3/19/2014 7:04:03 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:DK07whSaBu+Ozm1zKWplqi4vGg3s888888888888W88888888888w:D/QSKu+gmwt41888888888888W888884

Entry address:
0x3A2DC

Entry point:
55, 8B, EC, B9, 0B, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, B8, E0, 65, 43, 00, E8, 80, F3, FC, FF, 8B, 3D, 28, C2, 43, 00, 33, C0, 55, 68, 04, A7, 43, 00, 64, FF, 30, 64, 89, 20, B8, 20, A7, 43, 00, E8, 0A, 77, FD, FF, E8, 15, 0E, FD, FF, 8B, D8, 85, DB, 7C, 28, 43, 33, F6, 8D, 55, EC, 8B, C6, E8, 76, 0D, FD, FF, 8B, 45, EC, BA, 38, A7, 43, 00, E8, C5, C5, FC, FF, 75, 08, A1, CC, C1, 43, 00, C6, 00, 01, 46, 4B, 75, DB, 8D, 45, E8, E8, F7, 13, FD, FF, 8D, 45, E8, BA, 5C, A7, 43, 00, E8, DE, C2...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
231 KB (236,544 bytes)

Remove s_inst.exe - Powered by Reason Core Security