srptm.exe

srptm

ReSoft LTD.

The application srptm.exe by ReSoft has been detected as adware by 7 anti-malware scanners. This file is typically installed with the program Shopping Helper Smartbar by ReSoft Ltd. which is a potentially unwanted software program.
Publisher:
ReSoft LTD.  (signed and verified)

Product:
srptm

Version:
1.0.0.0

MD5:
bafdb283ed6a01d8324aae0e2e49342f

SHA-1:
95839fca221ffa48ff9e330538d1ab6a4081e955

SHA-256:
8518c3d2800339533209a5549e88fea0458d9d3c4e5558cccb9a36a81b2b5a7f

Scanner detections:
7 / 68

Status:
Adware

Analysis date:
4/19/2024 12:33:02 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Trash.Gen
7.11.140.82

Dr.Web
Trojan.Damaged.1
9.0.1.0177

IKARUS anti.virus
PUA.Linkury
t3scan.1.6.1.0

Reason Heuristics
PUP.ReSoft.F
14.8.8.1

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
10520

Trend Micro House Call
Suspicious_GEN.F47V0716
7.2.220

VIPRE Antivirus
Adware.Linkury
30468

File size:
24 KB (24,608 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013

Original file name:
srptm.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\lpt\srptm.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
8/1/2013 2:00:00 AM

Valid to:
8/2/2015 1:59:59 AM

Subject:
CN=ReSoft LTD., O=ReSoft LTD., STREET=4th Hanevi'im, L=Tel Aviv, S=Israel, PostalCode=64356, C=IL

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
51FA31336CEC649121E9A908289950D2

File PE Metadata
Compilation timestamp:
6/16/2014 1:09:14 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:InsjRbD/eXIPzViXQ9Wjmm6bPFlG7+dyt2I5T0huGWnhCxYPLg8JJ:4EXeYPzA9SmiS2I5T00vME/

Entry address:
0x59AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 00, 00, 0C, 00, 00, 00, B0, 39, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4246

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
14.5 KB (14,848 bytes)

The file srptm.exe has been discovered within the following program.

Shopping Helper Smartbar  by ReSoft Ltd.
This toolbar/web browser extension is typically installed as an optional offer, users generally have this bundled with 3rd party software.
snap.do
65% remove it
 
Powered by Should I Remove It?

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to a23-51-164-174.deploy.static.akamaitechnologies.com  (23.51.164.174:80)

Remove srptm.exe - Powered by Reason Core Security