AcSignApply.exe

AcSignApply Module

Autodesk, Inc

Publisher:
Autodesk  (signed by Autodesk, Inc)

Product:
AcSignApply Module

Version:
17.0.54.0

MD5:
44a01e8ff631dfe4f902b1b049991a04

SHA-1:
a8d50afee375416c076680b1354e599a34cc97ef

SHA-256:
bfb993464eaaa121f70219e8199ddcd5b3df93a8ce26226da50e914386d28154

Scanner detections:
18 / 68

Status:
Clean  (18 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/19/2024 7:38:14 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Krament.arw
8.3.2.2

avast!
Win32:Patched-JI
2014.9-160214

AVG
Win32/Slugin.A
2017.0.2833

Comodo Security
UnclassifiedMalware
16803

Dr.Web
Win32.Wplugin.1
9.0.1.045

ESET NOD32
Win32/Agent.NAG virus
10.7.0.302.0

Fortinet FortiGate
W32/Krament.ASA!tr
2/14/2016

F-Prot
W32/Virut.AI!Generic
v6.4.7.1.166

McAfee
Virus.W32/Wplugin
5600.6489

Microsoft Security Essentials
Threat.Undefined
1.213.2822.0

Norman
Krament.CM
11.20160214

Panda Antivirus
Trj/CI.A
16.02.14.12

Quick Heal
Trojan.Krament.asa
2.16.12.00

Rising Antivirus
Trojan.Win32.Generic.12BCE890
23.00.65.16212

Sophos
Mal/Generic-S
4.91

Trend Micro House Call
TROJ_GEN.RCBZ3JS
7.2.45

Trend Micro
TROJ_GEN.RCBZ3JS
10.465.14

VIPRE Antivirus
Trojan.Win32.Generic
20754

File size:
110.1 KB (112,744 bytes)

Product version:
17.0.54.0

Copyright:
Copyright (c) 1982-2006 by Autodesk, Inc.

Original file name:
AcSignApply.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\autocad 2007\bin\acadfeui\Program Files\root\acsignapply.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/21/2005 5:30:00 AM

Valid to:
9/22/2006 5:29:59 AM

Subject:
CN="Autodesk, Inc", OU=Design Solutions Group, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Autodesk, Inc", L=San Rafael, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
038C44AAA07757419CB39107992A3A73

File PE Metadata
Compilation timestamp:
3/5/2006 4:32:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1536:OEnCcfJg9JCGdwMGkHZn+0a5IkLOj0ua6bTJo5rzn0guA29PCmW:OEcXdw/M+0vkLOj0udo5rzahM9

Entry address:
0xAFFD

Entry point:
E8, 22, 04, 00, 00, E9, 36, FD, FF, FF, 3B, 0D, 18, 20, 41, 00, 75, 02, F3, C3, E9, A2, 04, 00, 00, 6A, 14, 68, 38, F6, 40, 00, E8, 5A, 03, 00, 00, FF, 35, 28, 28, 41, 00, 8B, 35, B8, D4, 40, 00, FF, D6, 59, 89, 45, E4, 83, F8, FF, 75, 0C, FF, 75, 08, FF, 15, BC, D4, 40, 00, 59, EB, 61, 6A, 08, E8, 7C, 05, 00, 00, 59, 83, 65, FC, 00, FF, 35, 28, 28, 41, 00, FF, D6, 89, 45, E4, FF, 35, 24, 28, 41, 00, FF, D6, 89, 45, E0, 8D, 45, E0, 50, 8D, 45, E4, 50, FF, 75, 08, E8, 4B, 05, 00, 00, 89, 45, DC, FF, 75, E4...
 
[+]

Entropy:
6.5689

Code size:
48 KB (49,152 bytes)

Scan AcSignApply.exe - Powered by Reason Core Security