mpcmd.exe

CDNetworks Co., Ltd.

Publisher:
CDNetworks Co., Ltd.  (signed and verified)

MD5:
82e1d7c2cbaa59bd63dff1c777871e48

SHA-1:
8d5f053b857c11d159e008833e49af75ab834ae6

SHA-256:
eceec772e7151c363da78fd2201d78f1003df0cfc17a7ac058872d61adad855e

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/25/2024 10:06:11 PM UTC  (today)

Scan engine
Detection
Engine version

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.26.3

File size:
145.5 KB (149,000 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\picaclient\mpcmd.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
11/14/2008 10:37:37 AM

Valid to:
12/22/2010 5:59:36 PM

Subject:
CN="CDNetworks Co., Ltd.", OU=Development Department, O="CDNetworks Co., Ltd.", L=Seoul, S=Kyunggi, C=KR

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
0C788CB269E1ED96F29FCB64562D65F5

File PE Metadata
Compilation timestamp:
12/17/2008 4:18:53 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

CTPH (ssdeep):
1536:O9q3UIpOail3pLHa4zklQgyEG+eebJALxZWVWGMjAMur+g45lWa3wzetl1n4B0:6qEHCQviZbElUMQMlF3wzetl1nA0

Entry address:
0x831F

Entry point:
E8, 7D, 73, 00, 00, E9, 41, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B, 4C, 24, 04, 2B, C1, C3, 8D, 41...
 
[+]

Entropy:
6.2220

Code size:
100 KB (102,400 bytes)

Scan mpcmd.exe - Powered by Reason Core Security