FMAPP.EXE

FMAPP Application

The executable FMAPP.EXE has been detected as malware by 9 anti-virus scanners.
Product:
FMAPP Application

Version:
1, 32, 0, 1

MD5:
48e19e59e03b96433669c46cb65c10d9

SHA-1:
7771dd7faa1f308ee3b55046d68e4f642887a821

SHA-256:
deba9c96008d8b19e18f6eac3650f9ca0817db1986558168d7ae47474434bdea

Scanner detections:
9 / 68

Status:
Malware

Analysis date:
9/21/2024 12:03:14 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.11453162
854

Avira AntiVirus
TR/Patched.Gen
7.11.30.172

Bitdefender
Trojan.Generic.11453162
1.0.20.1380

Emsisoft Anti-Malware
Trojan.Generic.11453162
8.14.10.03.01

F-Secure
Trojan.Generic.11453162
11.2014-03-10_6

G Data
Trojan.Generic.11453162
14.10.24

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.1.6.1.0

MicroWorld eScan
Trojan.Generic.11453162
15.0.0.828

Qihoo 360 Security
Win32/Trojan.291
1.0.0.1015

File size:
48.5 KB (49,664 bytes)

Product version:
1, 32, 0, 1

Copyright:
Copyright (C) 2010

Original file name:
FMAPP.EXE

File type:
Executable application (Win32 EXE)

Language:
Taiwanese

Common path:
C:\users\{user}\appdata\local\slimware utilities inc\slimdrivers\backups\20140407t011637758898\hdaudio\func_01&ven_10ec&dev_0269&subsys_1043102c\fmapp.exe

File PE Metadata
Compilation timestamp:
10/25/2010 10:58:22 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
768:rVmMeMnp6hqfU3axiw9IbKraPAt6lVx95jjJ6TLobCh:RN4P3mLI+raPtt5j96TYCh

Entry address:
0x14EF

Entry point:
E8, F8, 16, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 98, AD, 40, 00, 89, 0D, 94, AD, 40, 00, 89, 15, 90, AD, 40, 00, 89, 1D, 8C, AD, 40, 00, 89, 35, 88, AD, 40, 00, 89, 3D, 84, AD, 40, 00, 66, 8C, 15, B0, AD, 40, 00, 66, 8C, 0D, A4, AD, 40, 00, 66, 8C, 1D, 80, AD, 40, 00, 66, 8C, 05, 7C, AD, 40, 00, 66, 8C, 25, 78, AD, 40, 00, 66, 8C, 2D, 74, AD, 40, 00, 9C, 8F, 05, A8, AD, 40, 00, 8B, 45, 00, A3, 9C, AD, 40, 00, 8B, 45, 04, A3, A0, AD, 40, 00, 8D, 45, 08, A3, AC, AD, 40...
 
[+]

Entropy:
6.4219

Code size:
25.5 KB (26,112 bytes)

Remove FMAPP.EXE - Powered by Reason Core Security