sp360setup73.exe

SpectorSoft Corp.

The application sp360setup73.exe by SpectorSoft has been detected as a potentially unwanted program by 10 anti-malware scanners.
Publisher:
SpectorSoft Corp.  (signed and verified)

MD5:
2487ac609c6f06bc0e9de06041b03616

SHA-1:
e7d90b71b5b79ba1c001385cad68a45c61e324bf

SHA-256:
11fdf592771f14825729b44815ebc425970e89f29c652542dcc2849d0cf93479

Scanner detections:
10 / 68

Status:
Potentially unwanted

Analysis date:
4/24/2024 11:50:19 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Urlbot.NAT (variant)
8.6964

IKARUS anti.virus
Gen.Trojan.Heur
t3scan.1.1.118.0

Kaspersky
not-a-virus:Monitor.Win32.Spector
14.0.0.3752

Norman
W32/Urlbot.H
11.20140606

File size:
10.7 MB (11,176,032 bytes)

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
Thawte, Inc.

Valid from:
3/1/2011 6:00:00 PM

Valid to:
3/24/2013 6:59:59 PM

Subject:
CN=SpectorSoft Corp., OU=SPECTOR 360, O=SpectorSoft Corp., L=Vero Beach, S=Florida, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
1D00FB146BFA0B456BC689CDD7F5B5CE

File PE Metadata
Compilation timestamp:
2/9/2012 11:03:57 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:vBzWYnfn9bOn6lIzx4UvvNZ5HaB6qnKD8idlHzQn0:vByKfn9bO6lI+Un96B6qKD8Fn0

Entry address:
0x9C47C

Entry point:
E8, 71, C4, 00, 00, E9, 89, FE, FF, FF, 57, 8B, C6, 83, E0, 0F, 85, C0, 0F, 85, C1, 00, 00, 00, 8B, D1, 83, E1, 7F, C1, EA, 07, 74, 65, EB, 06, 8D, 9B, 00, 00, 00, 00, 66, 0F, 6F, 06, 66, 0F, 6F, 4E, 10, 66, 0F, 6F, 56, 20, 66, 0F, 6F, 5E, 30, 66, 0F, 7F, 07, 66, 0F, 7F, 4F, 10, 66, 0F, 7F, 57, 20, 66, 0F, 7F, 5F, 30, 66, 0F, 6F, 66, 40, 66, 0F, 6F, 6E, 50, 66, 0F, 6F, 76, 60, 66, 0F, 6F, 7E, 70, 66, 0F, 7F, 67, 40, 66, 0F, 7F, 6F, 50, 66, 0F, 7F, 77, 60, 66, 0F, 7F, 7F, 70, 8D, B6, 80, 00, 00, 00, 8D, BF...
 
[+]

Entropy:
7.5686

Code size:
815.5 KB (835,072 bytes)

Remove sp360setup73.exe - Powered by Reason Core Security