afsinst.exe

Simpli Software Inc.

The executable afsinst.exe has been detected as malware by 9 anti-virus scanners.
Publisher:
Oak Technology, Inc.  (signed by Simpli Software Inc.)

Version:
1.0.5.2

MD5:
c4102b56285cfd8ba1bfd3ddf10ea92d

SHA-1:
c9581c318d6e205fb8093b88adccaba6e09fff79

SHA-256:
8438bcd6f4d4a813fd1fb92dc0d52307481e61564637242155cd632380201089

Scanner detections:
9 / 68

Status:
Malware

Analysis date:
4/25/2024 11:18:31 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

avast!
Win32:Parite
160216-3

Dr.Web
Win32.Parite.2
9.0.1.05190

ESET NOD32
Win32/Parite.B virus
8.0.319.0

F-Prot
W32/Parite.B
4.6.5.141

F-Secure
Win32.Parite.B
5.15.21

Kaspersky
Virus.Win32.Parite
15.0.0.562

McAfee
Virus.W32/Pate.b
18.0.204.0

Microsoft Security Essentials
Threat.Undefined
1.215.2606.0

VIPRE Antivirus
Threat.46249
47848

File size:
1.6 MB (1,703,902 bytes)

Product version:
1.0.5.0

Copyright:
(C)2001 Oak Technology, Inc.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\{random}.tmp\util\ccc\afsinst.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/4/2003 12:00:00 AM

Valid to:
4/3/2004 11:59:59 PM

Subject:
CN=Simpli Software Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Simpli Software Inc., L=Tucson, S=Arizona, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2001 CA, OU=Terms of use at https://www.verisign.com/rpa (c)01, OU=VeriSign Trust Network, O="VeriSign, Inc."

Serial number:
33D9335DD91F461314C9F17E208A7668

File PE Metadata
Compilation timestamp:
6/19/1992 10:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:jLgizbuQ/JTKM+I8Bjdip7j7va7m7w0i1BUoyV6wtEehhp1CusfU1Dp:jcQFKMN8i9j7vc00BUwwtEopdsf0p

Entry address:
0x179000

Entry point:
90, BB, DF, 23, 25, 00, BE, 24, 90, 57, 00, 90, 90, 68, 98, 05, 00, 00, 5A, 90, 90, FF, 34, 32, 31, 1C, 24, 8F, 04, 32, 83, EA, 02, 83, EA, 02, 75, EF, 90, 90, 37, 5E, 24, 00, DF, 23, 25, 00, DF, 23, 65, 00, 6B, 3A, 24, 00, BF, 6A, 32, 00, 01, 6C, 32, 00, DF, 93, 27, 00, 20, DC, DA, FF, 03, 73, 64, 00, FF, 70, 64, 00, E9, 70, 64, 00, DF, 23, 25, 00, DF, 23, 25, 00, DF, 23, 25, 00, 03, 01, 24, 00, C1, 70, 24, 00, EB, 70, 24, 00, DF, 23, 25, 00, DF, 23, 25, 00, DF, 23, 25, 00, DF, 23, 25, 00, A3, 72, 64, 00...
 
[+]

Code size:
70 KB (71,680 bytes)

Remove afsinst.exe - Powered by Reason Core Security