flashgenius.exe

Flash 闪存精灵

数码之家

This is a setup program which is used to install the application. The file has been seen being downloaded from docviewer.yandex.ru.
Publisher:
数码之家

Product:
Flash 闪存精灵

Description:
Flash芯片型号查询器

Version:
3.00.0009

MD5:
d75976f82c0bdf722dfe98026fd56b3a

SHA-1:
a8ba9e5b74d7b032546bc2a4c2652838ab308dc0

SHA-256:
3f6eb407efcdf16baf4cde81506221be1c77caecac4f32b1a17dfa74710fff20

Scanner detections:
7 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/12/2025 12:41:41 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.Clod03f.Trojan
1.3.0.4613

Comodo Security
UnclassifiedMalware
17487

Fortinet FortiGate
W32/Dx.BDTZ!tr
12/24/2013

McAfee
Generic.dx!D75976F82C0B
5600.7271

Norman
Suspicious_Gen4.CDGR
11.20131224

VIPRE Antivirus
Trojan.Win32.Generic
24668

XVirus List
Win.Detected
2.3.31

File size:
142 KB (145,408 bytes)

Product version:
3.00.0009

Copyright:
~~翁软在线 创意无限~~

Trademarks:
哈尔滨工业大学航天学院

Original file name:
FlashGenius_v39.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\chipgenius_v4_00_0022_rc3\flashgenius.exe

File PE Metadata
Compilation timestamp:
1/10/2012 5:19:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:YEfD+Smrj5He4HOKHUz0N0CfkVOX7TBoutZLZcYgHT:VqSmrV+4H1HUzo0CfkOTBoSZLZRgH

Entry address:
0x63B30

Entry point:
60, BE, 00, F0, 44, 00, 8D, BE, 00, 20, FB, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, 26, 12, 06, 00, 57, 83, C3, 04, 53, 68, 2B, 4B, 01, 00, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 02, 00, 90, 90, 90, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9, 49, 89, 4C, 24, 6C, 0F, B6, 4A...
 
[+]

Code size:
88 KB (90,112 bytes)

The file flashgenius.exe has been discovered within the following program.

Chip Genius  by Chip Genius
About 9% of users remove it
 
Powered by Should I Remove It?

The file flashgenius.exe has been seen being distributed by the following URL.

Scan flashgenius.exe - Powered by Reason Core Security