DriverRestore.exe

DriverRestore

1NSTALL (383 MEDIA, INC.)

The application DriverRestore.exe by 1NSTALL (383 MEDIA, INC.) has been detected as a potentially unwanted program by 3 anti-malware scanners.
Publisher:
1NSTALL (383 MEDIA, INC.)  (signed and verified)

Product:
DriverRestore

Version:
2.3.1.0

MD5:
3656e7e357df371b86eef7dca2be8fb4

SHA-1:
9636a21e882fce68c792890052e2263fcbfc0a73

SHA-256:
365845d8378c08ae0a733bde70ddf5c18a0724bb64ed47716147ad4f58879666

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
4/23/2024 5:08:59 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Program.Unwanted.90
9.0.1.025

Reason Heuristics
PUP.Optional.1NSTALL383MEDIA
16.1.25.20

Trend Micro House Call
Suspicious_GEN.F47V1105
7.2.25

File size:
716.1 KB (733,304 bytes)

Product version:
2.3.1.0

Copyright:
Copyright © Driver Restore 2014

Original file name:
DriverRestore.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\driverrestore\driverrestore.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
7/30/2013 5:00:00 PM

Valid to:
5/24/2015 4:59:59 PM

Subject:
CN="1NSTALL (383 MEDIA, INC.)", O="1NSTALL (383 MEDIA, INC.)", L=Pleasanton, S=California, C=US, SERIALNUMBER=C3341789, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=California, OID.1.3.6.1.4.1.311.60.2.1.3=US

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
059C2A47830CA2BB198B8CCF1DFBBA93

File PE Metadata
Compilation timestamp:
10/9/2014 10:08:01 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:emcMycynZ0zQxuxmBlynZ0zQxuxmBjgYjL88Pe:evMs8Qxuos8QxuoBlLDe

Entry address:
0xAE29E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.3297

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
689 KB (705,536 bytes)

Remove DriverRestore.exe - Powered by Reason Core Security