SSLS.exe

SS

Solid Oak Software, Inc.

The executable SSLS.exe has been detected as malware by 7 anti-virus scanners. It runs as a separate (within the context of its own process) windows Service named “SS Logging Service”.
Publisher:
Solid Oak Software, Inc.  (signed and verified)

Product:
SS

Description:
SSLS Server

Version:
1.7.9.28

MD5:
2c1908ffc4e476f8488366fc5153e66d

SHA-1:
1b9f29cd02a7b839df6e81335dd7d24e111ca09b

SHA-256:
15d01bde0e4a3aa0b1d710d6f01c68b20a888b463590e8c6be4a6b3de7b178fd

Scanner detections:
7 / 68

Status:
Malware

Analysis date:
4/25/2024 2:20:48 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Packed/PECompact
7.1.1

Avira AntiVirus
TR/Spy.SnoopStick.12
7.11.123.138

IKARUS anti.virus
Trojan-Proxy.Win32.Delf.bs
t3scan.2.2.29

McAfee
Artemis!2C1908FFC4E4
5600.7081

Norman
Suspicious_Gen2.QQIUX
11.20140702

Rising Antivirus
PE:Trojan.Win32.Generic.12471EF3!306650867
23.00.65.14630

Sophos
Generic PUA BL
4.96

File size:
851.7 KB (872,168 bytes)

Product version:
1.0.0.0

Copyright:
Solid Oak Software, Inc.

Original file name:
SSLS.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\ssls.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
6/25/2008 8:00:00 AM

Valid to:
6/26/2010 7:59:59 AM

Subject:
CN="Solid Oak Software, Inc.", O="Solid Oak Software, Inc.", POBox=PO Box 6826, STREET=1209 De La Vina Street, L=Santa Barbara, S=CA, PostalCode=93101, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00CC642DF014178AF1EB829B91F838F928

File PE Metadata
Compilation timestamp:
11/2/2007 11:45:37 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:OdR9U8GnEY9RPR4qH2kJwS9fSIFF4jNfu89jwxMKONQgSOeoAGn9E5et+f+5:o9U/b9fWkJh9fSJ/0xXOxkoA4EN25

Entry address:
0x1000

Entry point:
B8, C4, F8, 65, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 13, 5F, AC, 93, F6, DA, 0E, 4A, 3E, 62, 1D, 64, 84, 49, A8, 0C, 99, B2, F5, 69, 35, D4, 52, AF, E7, 82, B9, EB, DF, 2D, 1B, DD, 5F, 55, ED, BE, 51, CB, BA, 79, 06, CE, B9, 06, C3, 57, 03, D8, 92, 66, 83, 3E, 63, CF, BF, AD, A3, E9, EF, F3, 52, AE, 0A, A5, DF, 59, 93, 9E, CE, E4, D8, D0, 15, 4F, 3E, 32, F6, F9, 2A, 83, D0, 95, A4, 50, B5, 67, D6, DD, 48, 2C, 15, 57, 27...
 
[+]

Entropy:
7.9652

Packer / compiler:
PECompact v2

Code size:
1.6 MB (1,728,512 bytes)

Service
Display name:
SS Logging Service

Service name:
SSLOGSVC

Type:
Win32OwnProcess


Remove SSLS.exe - Powered by Reason Core Security