adcmald.exe

MAL Server

Abbott Diabetes Care Inc

It runs as a separate (within the context of its own process) windows Service named “Meter Abstraction Server”. This file is installed with the program FreeStyle Auto-Assist.
Publisher:
Abbott Diabetes Care  (signed by Abbott Diabetes Care Inc)

Product:
MAL Server

Version:
2, 0, 3665, 0

MD5:
9404428910514e9e73eff77fa196e29c

SHA-1:
89247183f89b7567def1d1a9e6b405198b834197

SHA-256:
dcdfeed61108c1b806a8eb73c42c279be952100b5ef3af8554225b63c7b86db2

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/25/2024 10:56:29 PM UTC  (today)

Scan engine
Detection
Engine version

Emsisoft Anti-Malware
Win32.Ramnit
8.15.02.03.09

File size:
523.3 KB (535,896 bytes)

Product version:
2.0.0.0

Copyright:
Copyright (C) 2012 Abbott Diabetes Care

Original file name:
winMalServer.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\abbott diabetes care\freestyle auto-assist\adcmald.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/30/2012 7:00:00 PM

Valid to:
9/5/2015 6:59:59 PM

Subject:
CN=Abbott Diabetes Care Inc, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Abbott Diabetes Care Inc, L=Alameda, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
56FB6D483C533FED0D7D4D71C87E2CE9

File PE Metadata
Compilation timestamp:
2/9/2013 10:07:29 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
6144:zE8kG86FxY1zNdtHBDJbJmlS5ZAXju6L8liH6jmuenmmB3x18qKc2C5Wlxk7cObR:zFksxY1ZdtxJCSeu0Kmu1mFIqKHGUMR

Entry address:
0x32419

Entry point:
E9, A2, 76, 05, 00, E9, 9D, 75, 00, 00, E9, 3C, 62, 05, 00, E9, 53, 9F, 04, 00, E9, 1E, E6, 00, 00, E9, 79, 0E, 05, 00, E9, A4, 40, 04, 00, E9, 7F, A0, 02, 00, E9, EA, 93, 02, 00, E9, 35, F0, 02, 00, E9, 10, C0, 02, 00, E9, 61, E8, 05, 00, E9, F6, 04, 02, 00, E9, 61, 99, 04, 00, E9, A8, 5F, 05, 00, E9, A7, B4, 05, 00, E9, A2, 06, 02, 00, E9, 5D, EC, 01, 00, E9, 28, A4, 05, 00, E9, 73, 15, 05, 00, E9, 1E, 70, 02, 00, E9, D9, D0, 01, 00, E9, 64, DD, 01, 00, E9, 5F, 62, 04, 00, E9, 1A, 2A, 03, 00, E9, 45, 6B...
 
[+]

Entropy:
5.6156

Developed / compiled with:
Microsoft Visual C++ 8.0 (Debug)

Code size:
414 KB (423,936 bytes)

Service
Display name:
Meter Abstraction Server

Service name:
adcmald

Description:
Support for Abbott Diabetes Care blood glucose meters

Type:
Win32OwnProcess


The file adcmald.exe has been discovered within the following program.

FreeStyle Auto-Assist  by Abbott Labs
Publisher's description - “FreeStyle Auto-Assist software makes it easy for you to take a more informed role in managing your diabetes.”
www.AbbottDiabetesCare.com
About 3% of users remove it
 
Powered by Should I Remove It?

Scan adcmald.exe - Powered by Reason Core Security