nsqf130.exe

The application nsqf130.exe has been detected as a potentially unwanted program by 15 anti-malware scanners.
MD5:
d20aa9d3482bf4f25824d22b56b21f3f

SHA-1:
ac1762ee6ef100e39209971124d4d7b72c692bf2

SHA-256:
28d863b2f146b4bbbf429e716da011156e8927179d0adb173db2c9d3590d8079

Scanner detections:
15 / 68

Status:
Potentially unwanted

Analysis date:
4/23/2024 8:04:15 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.Agent
2014.10.13

Avira AntiVirus
DR/Delphi.Gen
7.11.30.172

avast!
Win32:Dropper-gen [Drp]
2014.9-141222

AVG
AdInstaller.Astromenda
2015.0.3321

ESET NOD32
Win32/DealPly (variant)
8.10662

G Data
Win32.Trojan.Agent.U72MJV
14.12.24

IKARUS anti.virus
AdWare.AdInstaller.Astromenda
t3scan.1.7.8.0

K7 AntiVirus
Riskware
13.183.13358

McAfee
Artemis!D20AA9D3482B
5600.6977

NANO AntiVirus
Trojan.Win32.Siggen6.dfonyu
0.28.2.62483

Norman
Suspicious_Gen4.GZRJH
11.20141222

Reason Heuristics
Threat.Win.Reputation.IMP
14.12.22.1

Rising Antivirus
PE:Trojan.Win32.Generic.174427CA!390342602
23.00.65.141220

SUPERAntiSpyware
Trojan.Agent/Gen-FlyStudio
10163

Trend Micro House Call
Suspicious_GEN.F47V1008
7.2.288

File size:
411.5 KB (421,376 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\opensoftwareupdater\nsqf130.exe

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:O6mUC0BpWx8xVqJ9n0ZD9Bn5b+ptPYqdxgL8e67u1OPlyqEyZ5:6UCWQx8xVqv697bmJYqdJeQQOEqEyn

Entry address:
0x5A78C

Entry point:
55, 8B, EC, 83, C4, F0, B8, F4, A5, 45, 00, E8, 24, C6, FA, FF, 68, C8, A7, 45, 00, 6A, 00, 6A, 00, 6A, 00, 33, C9, BA, E4, A7, 45, 00, B8, 0C, A8, 45, 00, E8, 78, B3, FF, FF, E8, 03, A0, FA, FF, 00, 00, 00, FF, FF, FF, FF, 10, 00, 00, 00, 4A, 2D, 34, 2C, 6A, 61, 2D, 30, 2C, 62, 77, 67, 62, 2E, 60, 58, 00, 00, 00, 00, FF, FF, FF, FF, 1C, 00, 00, 00, 2D, 30, 2C, 70, 2C, 2D, 6F, 7A, 6B, 67, 6D, 64, 6D, 75, 6D, 7A, 2D, 32, 2D, 2D, 2C, 6B, 67, 69, 2D, 38, 2C, 48, 00, 00, 00, 00, FF, FF, FF, FF, 09, 00, 00, 00...
 
[+]

Entropy:
6.6131

Developed / compiled with:
Microsoft Visual C++

Code size:
358.5 KB (367,104 bytes)

Remove nsqf130.exe - Powered by Reason Core Security