Music Chow.exe

Music Chow

Komcore Corporation

The application Music Chow.exe, “Music Chow Executable” by Komcore has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This file is typically installed with the program Music Chow by Komcore Corporation. While running, it connects to the Internet address komcore.com on port 80 using the HTTP protocol.
Publisher:
Komcore Corporation  (signed and verified)

Product:
Music Chow

Description:
Music Chow Executable

Version:
1.0.0

MD5:
f328a65397a0f8ae37600a44c74b6f1d

SHA-1:
569b4afac9934a592928a9e7776a47e65bf06143

SHA-256:
3228392c1e2274c07f30ce30d6fd53ac823a3646a762abc25daeee3c0d18728e

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 6:49:36 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Komcore
16.2.23.17

File size:
2.8 MB (2,944,488 bytes)

Product version:
1.0.0

Copyright:
Copyright ©2013 Komcore Corporation

Original file name:
Music Chow.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
COMODO CA Limited

Valid from:
9/23/2013 9:00:00 PM

Valid to:
9/24/2014 8:59:59 PM

Subject:
CN=Komcore Corporation, O=Komcore Corporation, STREET="300 Avalon Drive #3476", L=Wood Ridge, S=New Jersey, PostalCode=07075, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00FF5D7A28287F6E63C617031741E32633

File PE Metadata
Compilation timestamp:
10/4/2013 10:02:33 AM

OS version:
1.11

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.18

CTPH (ssdeep):
24576:MTmojajVxv8g+KYToFAeumk0H2s6Z/BndsHjyUX78AyuyuTDbdDHpFpA0GvVs43F:MTVdXob+/BndjUXQgrFNGvV71oMlul+

Entry address:
0x22F7B4

Entry point:
E9, 57, 21, 00, 00, 03, 10, 40, 00, 4F, 70, 65, 6E, 20, 57, 61, 74, 63, 6F, 6D, 20, 43, 2F, 43, 2B, 2B, 33, 32, 20, 52, 75, 6E, 2D, 54, 69, 6D, 65, 20, 73, 79, 73, 74, 65, 6D, 2E, 20, 50, 6F, 72, 74, 69, 6F, 6E, 73, 20, 43, 6F, 70, 79, 72, 69, 67, 68, 74, 20, 28, 43, 29, 20, 53, 79, 62, 61, 73, 65, 2C, 20, 49, 6E, 63, 2E, 20, 31, 39, 38, 38, 2D, 32, 30, 30, 32, 2E, 55, 89, E5, 50, 52, 83, EC, 08, 8D, 45, F0, 50, 8B, 45, 0C, 50, 8B, 55, 08, 52, E8, 97, 21, 00, 00, D9, EE, DE, D9, DF, E0, 9E, 76, 0C, DD, 45...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
2.2 MB (2,337,792 bytes)

The file Music Chow.exe has been discovered within the following program.

Music Chow  by Komcore Corporation
www.musicchow.com
About 4% of users remove it
 
Powered by Should I Remove It?

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to komcore.com  (62.151.182.58:80)

Remove Music Chow.exe - Powered by Reason Core Security