strongholdantivirus.exe

Security Stronghold LLC

The application strongholdantivirus.exe by Security Stronghold has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Stronghold Antivirus’. This file is typically installed with the program Stronghold Antivirus by Security Stronghold.
Publisher:
Security Stronghold LLC  (signed and verified)

Version:
1.0.0.0

MD5:
64384c256c8222521f3b14089ca01024

SHA-1:
d2d42cb30eadee35dbfb1d84a391922449a36c66

SHA-256:
ede28bcb882b6e39d586e8ba0e2df8cd21b1140f7c1c2ce585167f542d5ba1dc

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 4:30:17 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic.SecurityStronghold.Meta
15.7.5.8

File size:
6.4 MB (6,692,264 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\stronghold antivirus\strongholdantivirus.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/14/2013 6:55:31 PM

Valid to:
12/11/2014 11:49:56 AM

Subject:
E=manager@securitystronghold.com, CN=Security Stronghold LLC, O=Security Stronghold LLC, L=Astrakhan, C=RU

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121ACD1A0DCFFA94069288588DCC5FFCF18

File PE Metadata
Compilation timestamp:
5/27/2014 10:27:47 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:aI/8VJGWQBZUb0zHCLqdew38OHry7WdaC6R:aI/iJGWkCbmEqpt98

Entry address:
0x4B2070

Entry point:
55, 8B, EC, B9, 08, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, B8, B4, EC, 89, 00, E8, 0C, A3, B5, FF, 8B, 35, 1C, F8, 91, 00, 33, C0, 55, 68, D8, 26, 8B, 00, 64, FF, 30, 64, 89, 20, E8, 93, A7, FD, FF, 8B, 06, E8, 44, E7, CA, FF, 8B, 06, 33, D2, E8, 33, E1, CA, FF, 8B, 06, BA, F4, 26, 8B, 00, E8, 27, E1, CA, FF, 8D, 45, EC, E8, E3, 29, CC, FF, 8D, 45, EC, BA, 2C, 27, 8B, 00, E8, D2, 6C, B5, FF, 8B, 45, EC, E8, AA, 71, DB, FF, 84, C0, 0F, 84, 5F, 02, 00, 00, B8, 4C, 27, 8B, 00, E8, DC, E6, CF, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
4.7 MB (4,920,832 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Stronghold Antivirus

Command:
C:\Program Files\stronghold antivirus\strongholdantivirus.exe


The file strongholdantivirus.exe has been discovered within the following program.

Stronghold Antivirus  by Security Stronghold
Publisher's description - “Stronghold Antivirus is a lightweight and user-friendly antivirus and antimalware for everyday use both at home and in the office. Unlike other antiviruses it doesn't consume a lot of resources, it doesn't confuse you with difficult to understand windows and complex options.”
www.securitystronghold.com/stronghold-antivirus
53% remove it
 
Powered by Should I Remove It?

Remove strongholdantivirus.exe - Powered by Reason Core Security