drevo4.exe

Agelong Tree

Genery Software

Publisher:
Genery Software  (signed and verified)

Product:
Agelong Tree

Version:
4.7.10.25

MD5:
e0c91c388155032018f353e7ed0143a1

SHA-1:
844de65cd0a21d07aa6e881f943cbf4861abbad4

SHA-256:
48e5567e2ea089bc59ad2a5f72ef1d2ebc8745f7bcaead300a9a873576cf76d0

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/13/2017 4:25:49 AM UTC  (a few moments ago)

Scan engine
Detection
Engine version

CMC Antivirus
Trojan.Win32.Monder.2!O
1.1.0.977

File size:
4.3 MB (4,486,952 bytes)

Product version:
4.7

Copyright:
(c) 2002-2014 Genery Software

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\genery software\drevo 4\drevo4.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/16/2013 3:00:00 AM

Valid to:
1/16/2016 2:59:59 AM

Subject:
CN=Genery Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Genery Software, L=Barnaul, S=Altai Krai, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6870D59AFDBC0AF1F9E5CB7B6AACDEF3

File PE Metadata
Compilation timestamp:
10/25/2014 4:47:13 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:z+bjlchIHmFWsiTSk3L/S198eS+DVW7lRHdv:FhIHmriTl7/SH8kDQLF

Entry address:
0x1000

Entry point:
68, 01, 50, 12, 01, E8, 01, 00, 00, 00, C3, C3, 49, 81, 6C, ED, C7, F0, B9, EF, 15, 48, 73, 6C, 4F, FC, 32, 35, 73, F3, 73, 9E, 84, 37, FD, 24, F4, CE, 2B, 51, E3, 9B, 86, 16, D5, 4F, 7A, AE, AB, 66, 68, 9B, 4A, 4C, 66, A8, 44, 18, 1D, 6F, 8A, 5B, 17, 26, FC, C8, 8D, 47, 53, 86, 41, 1F, 52, 43, 3C, 0B, 5E, 58, EE, 5D, C8, 00, E5, 6B, 00, 6D, 23, 99, F4, FF, F9, A1, 43, 73, A5, 37, 96, 8C, E1, 1A, 8E, 32, D2, B7, 4A, B2, A3, C7, 2E, B2, 05, 3A, 95, B8, C8, 0C, 33, 59, A8, 8C, 97, 3A, 5F, 03, 1B, ED, 70, 12...
 
[+]

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
10.3 MB (10,775,552 bytes)

Scan drevo4.exe - Powered by Reason Core Security