IntegratedSupport.exe

Early Detection Center 4.0 v2

US Tech Support LLC

The application IntegratedSupport.exe by US Tech Support has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Early Detection Center 4.0  (signed by US Tech Support LLC)

Product:
Early Detection Center 4.0 v2

Version:
19.4.0.222 110272

MD5:
55512621970e1eea3920d2f2840d8a6c

SHA-1:
ebb7b7eb0b9127ef4a835a512c5b6f4747e72477

SHA-256:
0e73049da4842e0e8193265cc0b373b0bc6f38c36f4b35d9f0ab43c9aa652258

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/30/2024 2:21:21 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
Win32.Generic
16.6.23.8

File size:
597.8 KB (612,184 bytes)

Product version:
19.4.0.222 110272

Copyright:
©1997-2015 Early Detection Center 4.0

Original file name:
IntegratedSupport.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\early detection center 4.0\early detection center 4.0\integratedsupport.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
8/18/2015 8:00:00 PM

Valid to:
8/27/2016 7:59:59 PM

Subject:
CN=US Tech Support LLC, O=US Tech Support LLC, L=Santa Monica, S=California, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
2CACBC9FBF275C9E96D16F35FC9ABE8E

File PE Metadata
Compilation timestamp:
11/5/2015 1:59:48 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:FNni+ytzYX8qp9533/33b/gS9Oo4kREMxcKqc4TIn7gEHjrfTqfAY6sB124eFHyg:rDNb//gXfF6uhBi43qlaAoihYgb1bbCw

Entry address:
0x105F4

Entry point:
E8, B0, 04, 00, 00, E9, 6B, FD, FF, FF, 3B, 0D, 28, B0, 41, 00, 75, 02, F3, C3, E9, 37, 05, 00, 00, 8B, FF, 55, 8B, EC, F6, 45, 08, 02, 57, 8B, F9, 74, 25, 56, 68, 7A, 0C, 41, 00, 8D, 77, FC, FF, 36, 6A, 0C, 57, E8, 5A, 01, 00, 00, F6, 45, 08, 01, 74, 07, 56, E8, 88, FB, FF, FF, 59, 8B, C6, 5E, EB, 14, E8, 35, 06, 00, 00, F6, 45, 08, 01, 74, 07, 57, E8, 71, FB, FF, FF, 59, 8B, C7, 5F, 5D, C2, 04, 00, CC, FF, 25, 8C, 32, 41, 00, FF, 25, 70, 32, 41, 00, FF, 25, 6C, 32, 41, 00, 6A, 14, 68, B8, 80, 41, 00, E8...
 
[+]

Entropy:
6.8762

Code size:
69 KB (70,656 bytes)

Remove IntegratedSupport.exe - Powered by Reason Core Security