NetFilterIM.SYS

Max Secure Software NDIS IM Miniport Driver

Max Secure Software India Pvt. Ltd.

The file NetFilterIM.SYS by Max Secure Software India Pvt has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Max Secure Software  (signed by Max Secure Software India Pvt. Ltd.)

Product:
Max Secure Software NDIS IM Miniport Driver

Version:
19, 0, 0, 1

MD5:
381420da82a7f06c4a5ca90db3612b7d

SHA-1:
524880473f3a76181d9c878d822a7849a0204814

SHA-256:
20b56009546f033d0e93ce41fd36e648ce3f575f1614b5c3fc9057998be5b5f7

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/28/2024 10:04:30 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.MaxSecure.Optional (L)
17.3.15.16

File size:
44.9 KB (45,960 bytes)

Product version:
19, 0, 0, 1

Copyright:
(c) Max Secure Software. All rights reserved.

Trademarks:
Max Secure Software

Original file name:
NetFilterIM.SYS

File type:
Driver (Win64 SYS)

Language:
English (United States)

Common path:
C:\Program Files\max secure total security\drivers\x64\xp\netfilterim.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
6/11/2016 4:01:01 AM

Valid to:
6/12/2017 4:01:01 AM

Subject:
E=tech@maxpcsecure.com, CN=Max Secure Software India Pvt. Ltd., OU=software, O=Max Secure Software India Pvt. Ltd., L=Pune, S=MH, C=IN

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121658599B6C17E68ED91E3A7852B3E75C7

File PE Metadata
Compilation timestamp:
12/1/2016 2:41:17 PM

OS version:
6.1

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
9.0

Entry address:
0xC508

Entry point:
48, 83, EC, 28, 4C, 8B, C2, 4C, 8B, C9, E8, 95, FF, FF, FF, 49, 8B, D0, 49, 8B, C9, 48, 83, C4, 28, E9, E2, FA, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 5C, 00, 43, 00, 61, 00, 6C, 00, 6C, 00, 62, 00, 61, 00, 63, 00, 6B, 00, 5C, 00, 44, 00, 72, 00, 69, 00, 76, 00, 65, 00, 72, 00, 43, 00, 6F, 00, 6D, 00, 6D, 00, 75, 00, 6E, 00, 69, 00, 63, 00, 61, 00, 74, 00, 69, 00, 6F, 00, 6E, 00, 00, 00, CC, CC, CC, CC, 4E, 00, 65, 00, 74, 00, 46, 00, 69, 00, 6C, 00, 74, 00, 65, 00, 72, 00, 49, 00, 4D, 00, 00, 00...
 
[+]

Entropy:
6.6359

Code size:
27 KB (27,648 bytes)

Remove NetFilterIM.SYS - Powered by Reason Core Security