cloud-web_svc_2_102.exe

CloudWeb Service

cloudweb Inc

The application cloud-web_svc_2_102.exe, “CloudWeb Service Helper” by cloudweb Inc has been detected as a potentially unwanted program by 11 anti-malware scanners.
Publisher:
CloudWeb  (signed by cloudweb Inc)

Product:
CloudWeb Service

Description:
CloudWeb Service Helper

Version:
1, 0, 2, 102

MD5:
0a4128f254e22310842b4644c7384673

SHA-1:
d1aa6f165f07c0d187e8265e1cc3b28bdfe66137

SHA-256:
a9903fcf00902099c237d7cde0d2751c034de205d354776889bac149571ed034

Scanner detections:
11 / 68

Status:
Potentially unwanted

Analysis date:
5/10/2024 9:52:52 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.CloudWeb
2014.01.12

avast!
Win32:Adware-gen [Adw]
2014.9-151104

AVG
Generic5
2016.0.2935

Clam AntiVirus
Adware.Offerbox
0.98/18155

Comodo Security
UnclassifiedMalware
17595

Dr.Web
Trojan.Click2.42491
9.0.1.0308

ESET NOD32
Win32/Adware.WinAgir (variant)
9.9279

IKARUS anti.virus
Win32.AdWare
t3scan.2.2.29

Malwarebytes
Adware.CloudWeb
v2015.11.04.10

Panda Antivirus
Suspicious file
15.11.04.10

SUPERAntiSpyware
Adware.CloudWeb
9527

File size:
112 KB (114,720 bytes)

Product version:
1, 0, 2, 102

Copyright:
Copyright (C) 2009

Trademarks:
CloudWeb

Original file name:
cloud-web_svc_2_102.exe

File type:
Executable application (Win32 EXE)

Language:
Korean (Korea)

Common path:
C:\Program Files\cloud-web\cloud-web_svc_2_102.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
3/13/2011 5:00:00 PM

Valid to:
4/12/2012 4:59:59 PM

Subject:
CN=cloudweb Inc, OU=plan team, O=cloudweb Inc, L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6D6CAD66AA441EAFC5261D0072BCE7AB

File PE Metadata
Compilation timestamp:
1/26/2012 2:33:40 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:j37QJaQInGxDY8s3hOZc6kFVN4aVACZqegQ1VJHM1tJxJW:b7QJhgGxDMhOZJEN2zegQ1VJs1t7A

Entry address:
0x9B7C

Entry point:
55, 8B, EC, 6A, FF, 68, E8, 33, 41, 00, 68, 18, 81, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 74, 31, 41, 00, 33, D2, 8A, D4, 89, 15, A0, D2, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 9C, D2, 41, 00, C1, E1, 08, 03, CA, 89, 0D, 98, D2, 41, 00, C1, E8, 10, A3, 94, D2, 41, 00, 33, F6, 56, E8, 05, 21, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 3F, 4D, 00, 00, FF, 15, 70, 31, 41, 00, A3, 4C, E9, 41, 00, E8...
 
[+]

Entropy:
5.7326

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
72 KB (73,728 bytes)

Remove cloud-web_svc_2_102.exe - Powered by Reason Core Security