jsdrv.sys

JsDriver

WDKTestCert build

The file jsdrv.sys by WDKTestCert build has been detected as adware by 19 anti-malware scanners.
Publisher:
WDKTestCert build  (signed and verified)

Product:
JsDriver

Description:
jsdrv

Version:
1,38,0,1659

MD5:
56885ade0d28390f54988065ff735de3

SHA-1:
275a2c44ec98aa756f50d16792b17580cfcd1021

SHA-256:
c7775846c41a6e4d9859bd6d6c3a6b33b7d562fecdd055bdbef5385149546896

Scanner detections:
19 / 68

Status:
Adware

Analysis date:
5/8/2024 3:43:48 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Generic.1218086
383

AhnLab V3 Security
PUP/Win32.Goobzo
2015.05.06

Baidu Antivirus
Adware.Win64.ShopperPro
4.0.3.16118

Bitdefender
Adware.Generic.1218086
1.0.20.90

Dr.Web
Adware.Plugin.903
9.0.1.018

Emsisoft Anti-Malware
Adware.Generic.1218086
8.16.01.18.06

ESET NOD32
Win64/ShopperPro.B potentially unwanted (variant)
10.11455

Fortinet FortiGate
Adware/ShopperPro
1/18/2016

F-Secure
Adware.Generic.1218086
11.2016-18-01_2

G Data
Adware.Generic.1218086
16.1.25

IKARUS anti.virus
not-a-virus:AdWare.Shopper
t3scan.1.8.9.0

McAfee
Artemis!514651DE8AF9
5600.6517

MicroWorld eScan
Adware.Generic.1218086
17.0.0.54

NANO AntiVirus
Riskware.Win64.Plugin.dqepkx
0.30.10.952

Panda Antivirus
Trj/CI.A
16.01.18.06

Reason Heuristics
PUP.Goobzo.WDKTestCertbuild (M)
16.1.18.6

Trend Micro House Call
TROJ_GEN.R00UC0OD215
7.2.18

Trend Micro
TROJ_GEN.R00UC0OD215
10.465.18

VIPRE Antivirus
Adware.Goobzo
39222

File size:
46.3 KB (47,432 bytes)

Product version:
1,38,0,1659

Copyright:
Copyright (C) 2014

Original file name:
jsdrv.sys

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Program Files\shopperpro\jsdriver\1.38.0.1659\jsdrv.sys

Digital Signature
Authority:
WDKTestCert build

Valid from:
7/2/2014 11:11:03 AM

Valid to:
7/1/2024 9:00:00 PM

Subject:
CN="WDKTestCert build,130487838619585744"

Issuer:
CN="WDKTestCert build,130487838619585744"

Serial number:
1FF4F1438B32E8B04B5E270BF7AF53AA

File PE Metadata
Compilation timestamp:
3/25/2015 7:11:02 PM

OS version:
6.2

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
11.0

CTPH (ssdeep):
768:IdtkMoxL4I9TBJtqr9AVafBBZ2djcS3yCzEc8KasgZP:IdtkMPejzMZD8m3ZP

Entry address:
0x9450

Entry point:
48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, DA, 48, 8B, F9, E8, A3, 4B, 00, 00, 48, 8B, D3, 48, 8B, CF, 48, 8B, 5C, 24, 30, 48, 83, C4, 20, 5F, E9, AE, FE, FF, FF, CC, CC, CC, CC, CC, CC, 48, 89, 5C, 24, 08, 57, 48, 83, EC, 20, 48, 8B, 05, D7, 1C, 00, 00, 48, 8B, F9, 48, 8D, 0D, B5, 1C, 00, 00, 48, 8D, 1D, BE, 1C, 00, 00, 48, 3B, C1, 74, 45, 48, 3B, D8, 77, 40, 48, 8B, 43, 40, 48, 85, C0, 74, 18, 4C, 8B, 05, 8C, 2A, 00, 00, 48, 8D, 0D, 57, 01, 00, 00, 4C, 8B, CB, 48, 8B, D7, FF, D0, EB, 12, 48, 8B, 15...
 
[+]

Code size:
36 KB (36,864 bytes)

Remove jsdrv.sys - Powered by Reason Core Security