ea16f88b-92d7-917a-9294-575465342643_1d1f8b40dd7bbea

OOO DELTA-SOFT

The file ea16f88b-92d7-917a-9294-575465342643_1d1f8b40dd7bbea by OOO DELTA-SOFT has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
OOO DELTA-SOFT  (signed and verified)

MD5:
d383f59a18a5136a5970de692fd533dd

SHA-1:
806682b7d81fc63bffb4afb326f5649fcf4f538a

SHA-256:
13f7dc148c7a5635a1e9bd831ba8ac2bc13402a50e5e65eadfea949e270ff8e6

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
5/15/2024 4:51:06 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.WebAlta (M)
17.3.9.3

File size:
2.1 MB (2,165,496 bytes)

Common path:
C:\ProgramData\microsoft\microsoft antimalware\scans\filesstash\ea16f88b-92d7-917a-9294-575465342643_1d1f8b40dd7bbea

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
12/14/2015 2:00:00 AM

Valid to:
12/14/2016 1:59:59 AM

Subject:
CN=OOO DELTA-SOFT, O=OOO DELTA-SOFT, STREET=ul. Lesi Ukrainki 8, L=Irkutsk, S=Irkutskaya obl, PostalCode=664074, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00AE59A5A233D6B09E49486B18A399DE0D

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x105FF4

Entry point:
55, 8B, EC, 83, C4, F0, B8, 0C, 5D, 50, 00, E8, 60, 0D, F0, FF, A1, 78, A4, 50, 00, 8B, 00, E8, C0, E7, F5, FF, 8B, 0D, 14, A0, 50, 00, A1, 78, A4, 50, 00, 8B, 00, 8B, 15, F8, BE, 4D, 00, E8, C0, E7, F5, FF, 8B, 0D, 88, A6, 50, 00, A1, 78, A4, 50, 00, 8B, 00, 8B, 15, 68, BC, 4D, 00, E8, A8, E7, F5, FF, 8B, 0D, FC, A1, 50, 00, A1, 78, A4, 50, 00, 8B, 00, 8B, 15, C4, 59, 50, 00, E8, 90, E7, F5, FF, A1, 78, A4, 50, 00, 8B, 00, E8, 04, E8, F5, FF, E8, 4F, E5, EF, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1 MB (1,069,568 bytes)