LSM.exe

Onur Karagoz

The application LSM.exe by Onur Karagoz has been detected as a potentially unwanted program by 20 anti-malware scanners.
Publisher:
Onur Karagoz  (signed and verified)

Version:
1.0.0.0

MD5:
fb904361ab510183460df7b90e529433

SHA-1:
ef8ae66337baa5a73ad2c0cdb66a78f9e1d2cca3

SHA-256:
b2cb7345bf904c5e91b26021f4a1b99edf10609331942f16ea79de606dcc866b

Scanner detections:
20 / 68

Status:
Potentially unwanted

Analysis date:
5/1/2024 8:43:24 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.2031697
204

Avira AntiVirus
TR/ATRAPS.Gen
7.11.198.114

AVG
MSIL5
2017.0.2682

Bitdefender
Trojan.GenericKD.2031697
1.0.20.985

Comodo Security
UnclassifiedMalware
20518

Emsisoft Anti-Malware
Trojan.GenericKD.2031697
8.16.07.15.08

Fortinet FortiGate
MSIL/TrojanClicker_Agent.NIQ!tr
7/15/2016

F-Secure
Trojan.GenericKD.2031697
11.2016-15-07_6

G Data
Trojan.GenericKD.2031697
16.7.24

IKARUS anti.virus
Trojan.MSIL.TrojanClicker
t3scan.1.8.5.0

K7 AntiVirus
Unwanted-Program
13.188.14468

McAfee
RDN/Generic.grp!hs
5600.6338

MicroWorld eScan
Trojan.GenericKD.2031697
17.0.0.591

Norman
Troj_Generic.XREUJ
11.20160715

nProtect
Trojan.GenericKD.2031697
14.12.26.01

Panda Antivirus
Trj/CI.A
16.07.15.08

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

Sophos
Mal/Generic-S
4.98

Trend Micro House Call
Suspicious_GEN.F47V1216
7.2.197

VIPRE Antivirus
Trojan.Win32.Clicker
36182

File size:
146.3 KB (149,776 bytes)

Product version:
1.0.0.0

Original file name:
LSM.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\ProgramData\lsm.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/13/2014 2:00:00 AM

Valid to:
11/14/2015 1:59:59 AM

Subject:
CN=Onur Karagoz, O=Onur Karagoz, STREET=UĞURMUMCU MAH. UĞURMUMCU CAD., STREET=184 ÇATIEVLER SİTESİ, STREET=BLOK:C D:210, L=Ankara, S=Yenimahalle, PostalCode=06370, C=TR

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CD82F99CAD17F58E443C98C1BD258CBA

File PE Metadata
Compilation timestamp:
12/10/2014 3:47:13 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:1JUlzDikxjKhEpTQwN0ntl1S6WxzXshRsSQQz3/n9jLmUCo:18z1xjKagtl1tsKD/n9Hmg

Entry address:
0x2498E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 78, A4, 6A, D7, 56, B7, C7, E8, DB, 70, 20, 24, EE, CE...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
138.5 KB (141,824 bytes)

Remove LSM.exe - Powered by Reason Core Security