winrar-lista-centrumcz-pro-internet-explorer.exe

Instalátor Stahuj.cz

Centrum Holdings s.r.o.

The application winrar-lista-centrumcz-pro-internet-explorer.exe by Centrum Holdings s.r.o has been detected as a potentially unwanted program by 12 anti-malware scanners.
Publisher:
Centrum Holdings s.r.o.  (signed and verified)

Product:
Instalátor Stahuj.cz

Version:
0.2.2013.620

MD5:
7d383f5786b408f0ba93ec89a22da973

SHA-1:
d859a612062f05ce2f03fa2493ffe0919b58fff7

SHA-256:
1b8cfbed49445d4599f0ea7df3e4e89be52669f53c1877cd7cf453da02bc41ec

Scanner detections:
12 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 10:25:23 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.Zusy
7.1.1

Bitdefender
Gen:Variant.Zusy.32433
1.0.20.1550

Clam AntiVirus
Win.Trojan.Zusy-32
0.98/18155

F-Prot
W32/Delf.DI.gen
v6.4.7.1.166

herdProtect (fuzzy)
2015.11.6.7

K7 AntiVirus
Riskware
13.170.8947

Kaspersky
Trojan-Downloader.Win32.Genome
14.0.0.1163

Malwarebytes
Trojan.Downloader.Agent
v2015.11.06.07

McAfee
Downloader-FJB!40C0552EA786
5600.6590

NANO AntiVirus
Trojan.Win32.Genome.brmeek
0.24.0.53304

nProtect
Trojan-Downloader/W32.Genome.668929
13.07.02.04

Reason Heuristics
PUP.CentrumDownloader.CentrumHoldingssro (M)
15.9.11.18

File size:
713.2 KB (730,352 bytes)

Product version:
0.2.0.0

File type:
Executable application (Win32 EXE)

Language:
Czech

Common path:
C:\users\{user}\downloads\winrar-lista-centrumcz-pro-internet-explorer.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/17/2013 1:00:00 AM

Valid to:
1/18/2014 12:59:59 AM

Subject:
CN=Centrum Holdings s.r.o., OU=IT, O=Centrum Holdings s.r.o., STREET="Jankovcova 1037/49, Classic 7", L=Praha 7, S=Praha 7, PostalCode=170 00, C=CZ

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
009F596D64677ED16F3AA5D1E399F712A3

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:k08R0dUPlX1aIENDw42lOrPiUkCfGQZgs8h6NrV1LnWTuSAd:kNWGlFaVDw42lOrPikflZehG7WT+

Entry address:
0x87898

Entry point:
55, 8B, EC, 83, C4, F0, B8, 94, 69, 48, 00, E8, 3C, F3, F7, FF, A1, 80, DC, 48, 00, 8B, 00, E8, B8, 61, FD, FF, A1, 80, DC, 48, 00, 8B, 00, BA, F8, 78, 48, 00, E8, 27, 5C, FD, FF, 8B, 0D, 54, DA, 48, 00, A1, 80, DC, 48, 00, 8B, 00, 8B, 15, A8, 5A, 48, 00, E8, A7, 61, FD, FF, A1, 80, DC, 48, 00, 8B, 00, E8, 1B, 62, FD, FF, E8, A6, CF, F7, FF, 00, 00, FF, FF, FF, FF, 14, 00, 00, 00, 49, 6E, 73, 74, 61, 6C, E1, 74, 6F, 72, 20, 53, 74, 61, 68, 75, 6A, 2E, 63, 7A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
538 KB (550,912 bytes)