mdm.exe

Macrowell OMG Technology Ltd., Co

Publisher:
Macrowell OMG Technology Ltd., Co  (signed and verified)

Version:
1.0.0.1

MD5:
ea735f51f0845ee608b1ac753a91d7fa

SHA-1:
2795d9c9dc852a3fb7ce42d31fb0c03e7a9ed900

SHA-256:
8895c8dd3100013ca78ac9aa8a36e13cb94b595329d2cb4e401099a784ac426b

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 5:49:51 PM UTC  (today)

Scan engine
Detection
Engine version

F-Prot
W32/Trojan2.NLKN
4.6.5.141

McAfee
Trojan.Generic Dropper.tf
18.0.204.0

VIPRE Antivirus
Threat.4150696
48914

File size:
397.1 KB (406,632 bytes)

Product version:
1.0.0.1

File type:
Executable application (Win32 EXE)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\{random}.tmp\mdm.exe

Digital Signature
Authority:
The USERTRUST Network

Valid from:
3/18/2008 12:00:00 AM

Valid to:
3/18/2011 11:59:59 PM

Subject:
CN="Macrowell OMG Technology Ltd., Co", O="Macrowell OMG Technology Ltd., Co", STREET="6F.-1, No. 19-2, Sanchong Rd.", STREET=Nangang District, L=Taipei City, S=Taiwan, PostalCode=115, C=TW

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
6FBA31C23165DF3FCA8D994FB90F52

File PE Metadata
Compilation timestamp:
12/15/2008 5:13:58 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:z90ad3FNM2a0z4dt9JNV4Pnlr0XiEzmbOLtOlkAycbrXN5EEPcE:zJdwtLNV4PlrAiE6KtOlnyGIEPcE

Entry address:
0x2AD06

Entry point:
E8, FA, 71, 00, 00, E9, 17, FE, FF, FF, 3B, 0D, 60, 67, 45, 00, 75, 02, F3, C3, E9, 7A, 72, 00, 00, 8B, 44, 24, 04, A3, 74, 9D, 45, 00, C3, 55, 8D, AC, 24, 58, FD, FF, FF, 81, EC, 28, 03, 00, 00, A1, 60, 67, 45, 00, 33, C5, 89, 85, A4, 02, 00, 00, 56, 89, 85, 88, 00, 00, 00, 89, 8D, 84, 00, 00, 00, 89, 95, 80, 00, 00, 00, 89, 5D, 7C, 89, 75, 78, 89, 7D, 74, 66, 8C, 95, A0, 00, 00, 00, 66, 8C, 8D, 94, 00, 00, 00, 66, 8C, 5D, 70, 66, 8C, 45, 6C, 66, 8C, 65, 68, 66, 8C, 6D, 64, 9C, 8F, 85, 98, 00, 00, 00, 8B...
 
[+]

Entropy:
6.3825

Code size:
272 KB (278,528 bytes)

Scan mdm.exe - Powered by Reason Core Security