Files signed by BALTAGY

BALTAGY

BALTAGY is a digital signature publisher name observed in ThreatInfo records. This page groups 7 signed files and shows whether those files are currently classified as clean, undefined, or detected.

A digital signature can help identify a publisher, but it does not always prove that a file is safe. Certificates may be abused, stolen, expired, or attached to modified installers, so the file hash and detection status should be checked together.

Detection signal

Detected files use this signature name

At least one file signed as BALTAGY is detected by GridinSoft. Review the hashes below and scan the device if one of these files is present.

Download GridinSoft scanner
DotNet Win11 v22H2 Repack.exe 599e9e6d1675877097850853e0427c78 Ransom.Sabsik
ESET Security v15.0.21.0 64Bit 58015a4d2ca36d540d3d2fdec2c2be03 Ransom.Sabsik
StopWinUpdates.exe 9248ca9e51cd3213ee18d811822e5655 Ransom.Sabsik
Nero ControlCenter.exe b5a846c56193cf8386b8af105fb1e7af Trojan.Downloader
Nero Burning ROM.exe daea9f85215e8a10b90bcdb28bf84208 Trojan.Downloader
StopWinUpdates.exe 8709cb1c8559f04cafda2b77ab402181 Ransom.Sabsik
R-Drive Image.exe a5fc944db16a096bfc065b7859ba2451 Trojan.Gen

Certificate review summary

Do not trust this signature name by itself

ThreatInfo found detected files associated with BALTAGY. A matching signature name should be checked together with the file hash, detection verdict, and source path.

Recommended checks

  • Open any matching file report and compare the MD5 hash.
  • Confirm the file path and download source before trusting the binary.
  • Run a GridinSoft scan if a detected file from this list is present.