7z.exe

7-Zip

AB eCommerce Inc

The application 7z.exe by AB eCommerce Inc has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Igor Pavlov  (signed by AB eCommerce Inc)

Product:
7-Zip

Description:
7-Zip Console

Version:
9.20

MD5:
a90c74c3d0bac780389f8c30785240bf

SHA-1:
13bf1aa424d2b3a60e1f6a32d71a9ece678a4222

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
5/14/2025 9:00:51 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.PCActivator.Optional.Meta (L)
16.3.17.9

File size:
284.9 KB (291,760 bytes)

Product version:
9.20

Copyright:
Copyright (c) 1999-2010 Igor Pavlov

Original file name:
7z.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\driverassist\7z\x64\7z.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
7/2/2014 6:00:00 PM

Valid to:
6/9/2015 6:00:00 AM

Subject:
CN=AB eCommerce Inc, O=AB eCommerce Inc, L=Montreal, S=Quebec, C=CA

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0975652C10C0C9CDD0398B66A18B5FD1

File PE Metadata
Compilation timestamp:
11/18/2010 9:08:29 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
3072:tQcAeriaGk2tLkZn0hZk/fbt+7wjCUBO+04kU7jejsMlG6J/31dAeOEtNYdHVOQv:mpON2tA423Kibf7jvMl9TJTYn

Entry address:
0x2DEC0

Entry point:
48, 83, EC, 58, 48, 89, 5C, 24, 70, 48, 89, 7C, 24, 78, 66, 81, 3D, 29, 21, FD, FF, 4D, 5A, 74, 08, 33, DB, 89, 5C, 24, 60, EB, 7C, 48, 63, 05, 54, 21, FD, FF, 48, 8D, 0D, 11, 21, FD, FF, 48, 03, C1, 81, 38, 50, 45, 00, 00, 74, 08, 33, DB, 89, 5C, 24, 60, EB, 5B, 0F, B7, 48, 18, 81, F9, 0B, 01, 00, 00, 74, 32, 81, F9, 0B, 02, 00, 00, 74, 08, 33, DB, 89, 5C, 24, 60, EB, 3F, 83, B8, 84, 00, 00, 00, 0E, 77, 08, 33, DB, 89, 5C, 24, 60, EB, 2E, 33, DB, 39, 98, F8, 00, 00, 00, 0F, 95, C3, 89, 5C, 24, 60, EB, 1D...
 
[+]

Entropy:
6.0632

Code size:
182 KB (186,368 bytes)

Remove 7z.exe - Powered by Reason Core Security