pstrip.exe

EnTech Taiwan

The executable pstrip.exe, “PowerStrip for Windows” has been detected as malware by 18 anti-virus scanners.
Publisher:
EnTech Taiwan

Description:
PowerStrip for Windows

Version:
4.10.03.82

MD5:
4f45915e3a7211d2f0450effc8dc853e

SHA-1:
d3d06b2f06f4ff458aea57f6e281cf5327cc9c54

Scanner detections:
18 / 68

Status:
Malware

Analysis date:
4/23/2024 10:34:34 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Suspicious
7.1.1

AhnLab V3 Security
Malware/Win32.Trojan Horse
2013.04.02

Avira AntiVirus
TR/Crypt.XPACK.Gen
7.11.68.132

Bitdefender
Trojan.Generic.6623452
1.0.20.1015

Comodo Security
UnclassifiedMalware
15790

Emsisoft Anti-Malware
Trojan.Generic.6623452
8.14.07.22.12

F-Secure
Trojan.Generic.6623452
11.2014-22-07_3

G Data
Trojan.Generic.6623452
14.7.22

IKARUS anti.virus
Trojan-Banker.Win32.Banz
t3scan.2.0.0.0

McAfee
Artemis!4F45915E3A72
5600.7061

MicroWorld eScan
Trojan.Generic.6623452
15.0.0.609

Norman
Suspicious_Gen2.RZMN
11.20140722

nProtect
Trojan/W32.Agent.992768.E
13.04.02.01

Panda Antivirus
Generic Trojan
14.07.22.12

Quick Heal
(Suspicious) - DNAScan
7.14.12.00

Sophos
Mal/Generic-S
4.87

Trend Micro House Call
PAK_Generic.009
7.2.203

Trend Micro
PAK_Generic.009
10.465.22

File size:
969.5 KB (992,768 bytes)

Copyright:
Copyright © EnTech Taiwan 1995-2008

Original file name:
pstrip.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\documents and settings\www\pulpit\powerstrip.3.82.632.cracked-snd\pstrip.exe

File PE Metadata
OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

CTPH (ssdeep):
24576:D4ookxzjINTeICmHGvo9gYmAMmvu9wLVi7XmTts9ahB:D/jIBpCtopvu9wLVQYFX

Entry address:
0x25A05C

Entry point:
EB, 01, 85, F3, C1, C9, 1E, EB, 02, 16, 7F, F9, 72, 01, E2, E8, 01, 00, 00, 00, 7F, 59, F9, 72, 01, 0F, F9, 72, 01, 81, 69, C9, 9C, F1, 02, 1E, E8, 01, 00, 00, 00, C6, 58, F8, 73, 01, 78, BE, 5C, A2, 65, 00, EB, 02, CD, 20, EB, 02, CD, 20, 0F, B6, C9, 83, F0, 11, 8A, 0E, 8D, 1D, 00, 04, 00, 00, F2, 03, C0, EB, 01, 63, EB, 01, CC, C1, C8, 14, EB, 01, 73, 8D, 3D, 00, 00, 00, 00, F2, 33, CE, F8, 73, 01, 38, C1, F1, 14, F2, 6B, C1, 23, 85, C0, 0B, DF, EB, 01, 6D, EB, 01, 07, EB, 02, CD, 20, F2, 81, C1, 7A, B6...
 
[+]

Code size:
1.5 MB (1,591,296 bytes)

Remove pstrip.exe - Powered by Reason Core Security