nsr5ee.exe

The application nsr5ee.exe has been detected as a potentially unwanted program by 16 anti-malware scanners.
MD5:
da08c8a48620fd7293acbca943228851

SHA-1:
bea32d4913311a0b077785f80738e53760eb40ba

SHA-256:
ec2464e69bd85bac1e61aff6a22294e37ca7cb173424570a71665e2869a3a7df

Scanner detections:
16 / 68

Status:
Potentially unwanted

Analysis date:
5/7/2024 11:26:41 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
PUP/Win32.Agent
2014.10.13

Avira AntiVirus
DR/Delphi.Gen
7.11.30.172

avast!
Win32:Dropper-gen [Drp]
2014.9-140918

AVG
AdInstaller.Astromenda
2015.0.3282

ESET NOD32
Win32/DealPly (variant)
8.10662

G Data
Win32.Trojan.Agent.U72MJV
14.12.24

IKARUS anti.virus
AdWare.AdInstaller.Astromenda
t3scan.1.7.8.0

K7 AntiVirus
Riskware
13.183.13358

McAfee
Artemis!D20AA9D3482B
5600.6938

NANO AntiVirus
Trojan.Win32.Siggen6.dfonyu
0.28.2.62483

Norman
Suspicious_Gen4.GZRJH
11.20141222

Qihoo 360 Security
Win32/Trojan.Dropper.c9f
1.0.0.1015

Reason Heuristics
Threat.Win.Reputation.IMP
14.12.22.1

Rising Antivirus
PE:Trojan.Win32.Generic.174427CA!390342602
23.00.65.141220

SUPERAntiSpyware
Trojan.Agent/Gen-FlyStudio
10163

Trend Micro House Call
Suspicious_GEN.F47V1008
7.2.326

File size:
411.5 KB (421,376 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\opensoftwareupdater\nsr5ee.exe

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:+6mUC0BpWx8xVqJ9n0ZD9Bn5b+ptPYqdxgL8e67u1OPlyqEyZj:qUCWQx8xVqv697bmJYqdJeQQOEqEy9

Entry address:
0x5A78C

Entry point:
55, 8B, EC, 83, C4, F0, B8, F4, A5, 45, 00, E8, 24, C6, FA, FF, 68, C8, A7, 45, 00, 6A, 00, 6A, 00, 6A, 00, 33, C9, BA, E4, A7, 45, 00, B8, 0C, A8, 45, 00, E8, 78, B3, FF, FF, E8, 03, A0, FA, FF, 00, 00, 00, FF, FF, FF, FF, 10, 00, 00, 00, 4A, 2D, 34, 2C, 6A, 61, 2D, 30, 2C, 62, 77, 67, 62, 2E, 60, 58, 00, 00, 00, 00, FF, FF, FF, FF, 1C, 00, 00, 00, 2D, 30, 2C, 70, 2C, 2D, 6F, 7A, 6B, 67, 6D, 64, 6D, 75, 6D, 7A, 2D, 32, 2D, 2D, 2C, 6B, 67, 69, 2D, 38, 2C, 48, 00, 00, 00, 00, FF, FF, FF, FF, 09, 00, 00, 00...
 
[+]

Entropy:
6.6131

Developed / compiled with:
Microsoft Visual C++

Code size:
358.5 KB (367,104 bytes)

Remove nsr5ee.exe - Powered by Reason Core Security