iszone.exe

gaia media group Co., Ltd.

Publisher:
gaia media group Co., Ltd.  (signed and verified)

Version:
1.0.0.0

MD5:
a3f3b94fc55d59f8128ae546dfaeec4f

SHA-1:
012b0635894169130b87b0e347dcfa6d82942bbe

SHA-256:
0382f01758085e5a1aaf8b88aeed487c17a1c1d486afa8edecd6d3fc440523e8

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/4/2024 1:15:48 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Trojan.Adkor.520
9.0.1.05190

ESET NOD32
Win32/Adware.SafeTerra.A application
7.0.302.0

File size:
5.2 MB (5,486,840 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\iszone\iszone.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
5/19/2015 9:00:00 AM

Valid to:
6/18/2016 8:59:59 AM

Subject:
CN="gaia media group Co., Ltd.", O="gaia media group Co., Ltd.", L=Gangseo-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
621C5D885A095C1E68B67865BE750E97

File PE Metadata
Compilation timestamp:
6/16/2016 9:47:47 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:+PhvN6CpJvN0JcScUHdHt1O//j5kzJ0AKTo1Mk1d6paFUv+XiMejF9AT1seh9xmJ:ktNJpxRf/LSXWST1sEzmgpIie16ly

Entry address:
0x4658D0

Entry point:
55, 8B, EC, B9, 14, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, B8, C4, 5F, 85, 00, E8, 11, 70, BA, FF, 33, C0, 55, 68, 1D, 5F, 86, 00, 64, FF, 30, 64, 89, 20, A1, C8, 17, 88, 00, 8B, 00, E8, D7, 8F, CF, FF, A1, C8, 17, 88, 00, 8B, 00, C6, 40, 5F, 00, A1, C8, 17, 88, 00, 8B, 00, B2, 01, E8, DE, AC, CF, FF, A1, C8, 17, 88, 00, 8B, 00, BA, 38, 5F, 86, 00, E8, A5, 89, CF, FF, A1, C8, 17, 88, 00, 8B, 00, C7, 40, 78, 60, EA, 00, 00, B8, 2C, 9A, 88, 00, BA, 54, 5F, 86, 00, E8, 5C, 2A, BA, FF, B2, 01, A1, DC...
 
[+]

Entropy:
6.6753

Developed / compiled with:
Microsoft Visual C++

Code size:
4.4 MB (4,607,488 bytes)

Scan iszone.exe - Powered by Reason Core Security