FSCAppServ.exe

FSCAppServ - Intel Desktop Boards Fan Speed Control Instrumentation Service

Intel Corporation

The executable FSCAppServ.exe, “Intel® Desktop Boards Fan Speed Control Instrumentation Service” has been detected as malware by 11 anti-virus scanners.
Publisher:
Intel Corporation  (signed and verified)

Product:
FSCAppServ - Intel® Desktop Boards Fan Speed Control Instrumentation Service

Description:
Intel® Desktop Boards Fan Speed Control Instrumentation Service

Version:
1.2.4.47

MD5:
6e44247e841923986abd640669877dde

SHA-1:
f11446d3fe52cf03f1a5df544abbebb208ad7926

SHA-256:
233c9ee14b655c9d1f2333b36b87a817b17c5775ae18f6b5cbc81124c67d3018

Scanner detections:
11 / 68

Status:
Malware

Analysis date:
4/26/2024 9:35:22 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Pioneer-C
160518-2

AVG
Win32/Floxif
2015.0.4568

Dr.Web
Win32.FloodFix.7
9.0.1.05190

Emsisoft Anti-Malware
Win32.Floxif
11.5.0.6191

ESET NOD32
Win32/Floxif.H virus
7.0.302.0

F-Prot
W32/Floxif.B
4.6.5.141

Kaspersky
Virus.Win32.Pioneer
15.0.0.562

McAfee
Trojan.Dropper-FIY!6E44247E8419
18.0.204.0

Microsoft Security Essentials
Threat.Undefined
1.223.721.0

Norman
Win32.Floxif.A
19.05.2016 01:04:49

Sophos
Virus 'W32/Floxif-C'
5.23

File size:
190.7 KB (195,319 bytes)

Product version:
1.2.4.47

Copyright:
Copyright © 2010-2014, Intel Corporation. All Rights Reserved.

Original file name:
FSCAppServ.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\intel\fsc\fscappserv.exe

Digital Signature
Authority:
Intel Corporation

Valid from:
6/18/2013 4:55:52 PM

Valid to:
6/2/2016 4:55:52 PM

Subject:
CN=Channel Innovations and Solutions Division, OU=Software Development Org., O=Intel Corporation, L=Santa Clara, S=CA, C=US

Issuer:
CN=Intel External Basic Issuing CA 3A, O=Intel Corporation, L=Santa Clara, S=CA, C=US

Serial number:
3300009EFAFFD8163D6F29D4CB000300009EFA

File PE Metadata
Compilation timestamp:
1/20/2014 6:41:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

CTPH (ssdeep):
3072:qkOGHgDAhat4yyR72eZSgI2d6xu00/agICe52lQBV+UdE+rECWp7hKcdl:qjEaCyyR72eZSgI2d6xu00/agIBBV+UY

Entry address:
0xC02C

Entry point:
E9, 36, 88, FF, FF, 68, 20, D4, 40, 00, 68, 20, C0, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 20, 53, 56, 57, 89, 65, E8, 83, 65, FC, 00, 6A, 01, FF, 15, E0, D0, 40, 00, 59, 83, 0D, B0, 33, 41, 00, FF, 83, 0D, B4, 33, 41, 00, FF, FF, 15, E4, D0, 40, 00, 8B, 0D, 88, 33, 41, 00, 89, 08, FF, 15, E8, D0, 40, 00, 8B, 0D, 84, 33, 41, 00, 89, 08, A1, EC, D0, 40, 00, 8B, 00, A3, B8, 33, 41, 00, E8, C3, 00, 00, 00, 83, 3D, 60, FD, 40, 00, 00, 75, 0C, 68, 5A, C1, 40, 00, FF, 15, F0, D0...
 
[+]

Entropy:
6.8259

Packer / compiler:
tElock 0.99 - 1.0 private

Code size:
48 KB (49,152 bytes)

Remove FSCAppServ.exe - Powered by Reason Core Security