hola_drv.sys

Hola Fast Internet

Hola Networks Ltd.

The file hola_drv.sys, “Hola Network Management Driver” has been detected as malware by 1 anti-virus scanner.
Publisher:
Hola Networks Ltd.  (signed and verified)

Product:
Hola Fast Internet

Description:
Hola Network Management Driver

Version:
1.0.163

MD5:
157841bfaaca719891d80ba727e9dd5e

SHA-1:
45b164d9fa35f1257fa56df546fc8346a22fe6c0

SHA-256:
9f8cebd1cdfd1b5827bd38f89c7c79f16663a3e9bdc5e193652b98a41ba7c79a

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
12/13/2017 4:14:18 AM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Reason Heuristics
Threat.Win.Reputation.IMP
16.11.19.1

File size:
450 KB (460,784 bytes)

Product version:
1.0.163

Copyright:
Copyright (C) 2012

Original file name:
hola_drv.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Program Files\hola\app\hola_drv.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/19/2012 3:00:00 AM

Valid to:
8/19/2013 2:59:59 AM

Subject:
CN=Hola Networks Ltd., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Hola Networks Ltd., L=Netanya, S=Netanya, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7FF4000193285F2546CB595FD3E2D374

File PE Metadata
Compilation timestamp:
1/21/2013 4:43:44 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
10.0

CTPH (ssdeep):
6144:99ljBYJdn2eixG+SFBlWfDkG3PUz6GMEkIMWJUYYCBT59E2pEIoF/FYT:999BYJo3LSFzWfDkG3sfMEvMWquqyT

Entry address:
0x20D0

Entry point:
55, 8B, EC, 83, EC, 60, 53, 56, 57, 33, DB, 33, C0, 6A, 7C, BE, 20, 0E, 01, 00, BA, 70, 0E, 01, 00, B9, 00, 0E, 01, 00, 53, 89, 75, E0, 89, 75, B4, 68, C0, 51, 07, 00, C7, 45, F8, 10, 00, 12, 00, BF, 50, 26, 05, 00, C7, 45, CC, B0, 58, 01, 00, C7, 45, D0, C0, 76, 01, 00, C7, 45, D4, 00, 9B, 01, 00, 89, 5D, D8, 89, 5D, DC, 89, 55, E4, 89, 4D, E8, C7, 45, EC, 01, 00, 00, 00, 89, 45, F0, 89, 45, F4, C7, 45, A0, E0, 6D, 01, 00, C7, 45, A4, F0, 80, 01, 00, C7, 45, A8, E0, 65, 01, 00, 89, 5D, AC, 89, 5D, B0, 89...
 
[+]

Entropy:
6.0972

Developed / compiled with:
Microsoft Visual C++

Code size:
272.3 KB (278,784 bytes)

Remove hola_drv.sys - Powered by Reason Core Security