eroute.exe

routeCheck

Microsoft

Scan eroute.exe - Powered by Reason Core Security
Publisher:
Microsoft

Product:
routeCheck

Version:
1.0.0.0

MD5:
0788c2c275068c9637431ca4090f32cb

SHA-1:
6dd015148f4fa4fe2552f24e292b442e2022e793

SHA-256:
356e2a865aa4effdbc8be43abd455a766714f862904b23ec1c6d1c1564d32fbe

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
12/4/2016 1:29:24 PM UTC  (today)

Scan engine
Detection
Engine version

Jiangmin
Trojan/Blazebot.c
KV140610

nProtect
Trojan/W32.Agent.216576.DM
12.09.11.01

ViRobot
Trojan.Win32.A.Downloader.873984
2011.4.7.4223

File size:
211.5 KB (216,576 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2009

Original file name:
eroute.exe

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
5/11/2012 3:19:32 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
3072:sRoEC2Oi8NXC797F8TBfFvj4bq57l6KRI4djpZpzwaYLKeyoHnS0Q:sdC2F8NXC796TB9vj48RfdKe4A

Entry address:
0xFFEF

Entry point:
E8, 12, 5B, 00, 00, E9, A4, FE, FF, FF, 6A, 0C, 68, 38, 11, 42, 00, E8, 67, 0D, 00, 00, 6A, 0E, E8, 68, 02, 00, 00, 59, 83, 65, FC, 00, 8B, 75, 08, 8B, 4E, 04, 85, C9, 74, 2F, A1, F4, 37, 42, 00, BA, F0, 37, 42, 00, 89, 45, E4, 85, C0, 74, 11, 39, 08, 75, 2C, 8B, 48, 04, 89, 4A, 04, 50, E8, D9, E7, FF, FF, 59, FF, 76, 04, E8, D0, E7, FF, FF, 59, 83, 66, 04, 00, C7, 45, FC, FE, FF, FF, FF, E8, 0A, 00, 00, 00, E8, 56, 0D, 00, 00, C3, 8B, D0, EB, C5, 6A, 0E, E8, 33, 01, 00, 00, 59, C3, CC, CC, CC, CC, CC, CC...
 
[+]

Code size:
102 KB (104,448 bytes)

Scan eroute.exe - Powered by Reason Core Security