Parlag.exe

Parlag Anti Virus

اميرعجم

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Parlag’.
Publisher:
اميرعجم

Product:
Parlag Anti Virus

Description:
داوود

Version:
1.00

MD5:
3d01f3ab51ba3664b8291aca010683ee

SHA-1:
e05dfd0cdc918936bc8c7289b6c4ba83e6c3284e

SHA-256:
ccd8adf8b93f9d8927fbaccd1124ddf796db1f28cbb76a9b64da9036f36901dd

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
5/13/2025 3:06:45 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
UnclassifiedMalware
17527

Trend Micro House Call
TROJ_GEN.F47V0821
7.2.364

Trend Micro
Possible_Otorun8
10.465.30

File size:
212 KB (217,088 bytes)

Product version:
1.00

Copyright:
1387

Original file name:
Parlag.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\parlag\parlag.exe

File PE Metadata
Compilation timestamp:
10/3/2008 3:03:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:8nE83XqaMBstZZZZXZZZZxZOzbZOz7Ss99m:B8wstZZZZXZZZZxZOzbZOz7H9

Entry address:
0x1740

Entry point:
68, 04, 86, 41, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 44, AA, 82, 78, AB, 43, D0, 4B, BC, 97, 40, 9E, DD, BC, B1, 33, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 72, 6F, 6A, 65, 63, 74, 31, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 1A, 04, 5C, 5D, 11, DE, 50, 88, 4F, 82, 9C, DA, 6A, A0, A9, B4, 62, 42, D9, D2, D9, 2A, 45, BC, 43, 84, 70, 56, A1, 98, 06, C5, 0D, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Entropy:
6.2156

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
136 KB (139,264 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Parlag

Command:
C:\Program Files\parlag\parlag.exe


Scan Parlag.exe - Powered by Reason Core Security