NetFilterIM.SYS

Max Secure Software NDIS IM Miniport Driver

Max Secure Software India Pvt. Ltd.

The file NetFilterIM.SYS by Max Secure Software India Pvt has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Max Secure Software  (signed by Max Secure Software India Pvt. Ltd.)

Product:
Max Secure Software NDIS IM Miniport Driver

Version:
19, 0, 0, 1

MD5:
fccf04551e710fedf20b346e0e7ba5df

SHA-1:
2d66f82a36745517cec56082fec07cec9d3e8361

SHA-256:
944ec293a88dbeca20db8e7498861360156e207e32b0fa785d38c6e12f5080fe

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/28/2024 10:10:08 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.MaxSecure.Optional (L)
17.3.15.16

File size:
46.9 KB (48,008 bytes)

Product version:
19, 0, 0, 1

Copyright:
(c) Max Secure Software. All rights reserved.

Trademarks:
Max Secure Software

Original file name:
NetFilterIM.SYS

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Program Files\max secure total security\drivers\x64\vista\netfilterim.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/11/2016 4:01:01 AM

Valid to:
6/12/2017 4:01:01 AM

Subject:
E=tech@maxpcsecure.com, CN=Max Secure Software India Pvt. Ltd., OU=software, O=Max Secure Software India Pvt. Ltd., L=Pune, S=MH, C=IN

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121658599B6C17E68ED91E3A7852B3E75C7

File PE Metadata
Compilation timestamp:
12/1/2016 2:41:22 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0xD508

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, E2, FA, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 5C, 00, 43, 00, 61, 00, 6C, 00, 6C, 00, 62, 00, 61, 00, 63, 00, 6B, 00, 5C, 00, 44, 00, 72, 00, 69, 00, 76, 00, 65, 00, 72, 00, 43, 00, 6F, 00, 6D, 00, 6D, 00, 75, 00, 6E, 00, 69, 00, 63, 00, 61, 00, 74, 00, 69, 00, 6F, 00, 6E, 00, 00, 00, CC, CC, CC, CC, 4E, 00, 65, 00, 74, 00, 46, 00, 69, 00, 6C, 00, 74, 00, 65, 00, 72, 00, 49, 00, 4D, 00, 00, 00...
 
[+]

Entropy:
6.6292

Code size:
29 KB (29,696 bytes)

Remove NetFilterIM.SYS - Powered by Reason Core Security