MaxUSBProc.exe

Max Secure Software India Pvt. Ltd.

The application MaxUSBProc.exe, “Max USB Protection” by Max Secure Software India Pvt has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘MaxUSBProc’.
Publisher:
Max Secure Software  (signed by Max Secure Software India Pvt. Ltd.)

Product:
Max Secure Software

Description:
Max USB Protection

Version:
1, 0, 0, 2

MD5:
b8d1d7a41b2efb9de524b3204612bd81

SHA-1:
967bf43c76daa93098e22b118d1b0b006232ff51

SHA-256:
99951c2f61d94a89a00db767b5e1074a601a2b80a5af71c27393762a89cf9d4d

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/23/2024 2:39:58 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.MaxSecure.Optional.Meta (L)
15.12.4.2

File size:
594.2 KB (608,448 bytes)

Product version:
1, 0, 0, 2

Copyright:
(c) Max Secure Software 2011. All rights reserved.

Original file name:
MaxUSBProc.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\max secure anti virus\maxusbproc.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/29/2010 12:23:42 PM

Valid to:
6/22/2012 10:27:42 PM

Subject:
E=tech@maxpcsecure.com, CN=Max Secure Software India Pvt. Ltd., O=Max Secure Software India Pvt. Ltd., L=pune, S=MH, C=IN

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
0100000000012985618846

File PE Metadata
Compilation timestamp:
6/29/2011 5:22:29 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:6uoaHt0O/+MN1bleMtvC7uXEiwX+El3XB5uSt:60nleMFW5R/l3x5N

Entry address:
0x2C454

Entry point:
48, 83, EC, 28, E8, F7, 4E, 00, 00, 48, 83, C4, 28, E9, 16, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 48, 3B, 0D, 99, 4C, 04, 00, 75, 11, 48, C1, C1, 10, 66, F7, C1, FF, FF, 75, 02, F3, C3, 48, C1, C9, 10, E9, 69, 4F, 00, 00, CC, 48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 30, 49, 8B, D9, 49, 8B, F0, 48, 8B, FA, 4D, 85, C9, 75, 04, 33, C0, EB, 66, 48, 85, C9, 75, 25, E8, C1, 2F, 00, 00, BB, 16, 00, 00, 00, 48, 83, 64, 24...
 
[+]

Entropy:
6.0538

Code size:
315 KB (322,560 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
MaxUSBProc

Command:
C:\Program Files\max secure anti virus\maxusbproc.exe


Remove MaxUSBProc.exe - Powered by Reason Core Security