qengine.exe

qengine.exe

Qustodio Technologies SL

It runs as a separate (within the context of its own process) windows Service named “qengine”. This file is installed with the program Qustodio.
Publisher:
Qustodio  (signed by Qustodio Technologies SL)

Product:
qengine.exe

Version:
2.2.4.5

MD5:
3e979ca717283fb40cbf15a476373105

SHA-1:
fec3a7eb0aa9d1c8aab8ac1521a77f6564dd5db2

SHA-256:
1633dab6e64e4d78d790528f9cf57e15a76ce85aa619eb987e62320a7d5001be

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/16/2024 4:25:39 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
BACKDOOR.Trojan
9.0.1.0102

File size:
3.5 MB (3,710,288 bytes)

Product version:
2.2.4.5

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\qustodio\qproxy\qengine.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/17/2014 10:00:00 PM

Valid to:
2/17/2015 9:59:59 PM

Subject:
CN=Qustodio Technologies SL, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Qustodio Technologies SL, L=Barcelona, S=Catalonia, C=ES

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
78E79D2E22D6FFABF26FCBFF555CE2CC

File PE Metadata
Compilation timestamp:
4/19/2013 11:52:59 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:EjyVI7FM0q3+cxF0FVAqOzhGftwzQKKMffa9K+cMYAwnxHT3bp/a+Jl:EWO7YKFftAQKvffas+8h

Entry address:
0x14A837

Entry point:
E8, 8D, 0E, 01, 00, E9, 78, FE, FF, FF, 6A, 10, 68, 60, DB, 75, 00, E8, 5B, 12, 00, 00, 8B, 5D, 08, 85, DB, 75, 0E, FF, 75, 0C, E8, D2, CF, FF, FF, 59, E9, CC, 01, 00, 00, 8B, 75, 0C, 85, F6, 75, 0C, 53, E8, 89, D0, FF, FF, 59, E9, B7, 01, 00, 00, 83, 3D, A0, A7, 77, 00, 03, 0F, 85, 93, 01, 00, 00, 33, FF, 89, 7D, E4, 83, FE, E0, 0F, 87, 8A, 01, 00, 00, 6A, 04, E8, CD, 5E, 00, 00, 59, 89, 7D, FC, 53, E8, F1, 5F, 00, 00, 59, 89, 45, E0, 3B, C7, 0F, 84, 9E, 00, 00, 00, 3B, 35, C8, A7, 77, 00, 77, 49, 56, 53...
 
[+]

Code size:
2.8 MB (2,960,384 bytes)

Service
Display name:
qengine

Description:
qengine's Redirector service

Type:
Win32OwnProcess

Depends on:
RPCSS


The file qengine.exe has been discovered within the following program.

Qustodio  by Qustodio LLC
Publisher's description - “Qustodio helps you protect your kids online. See how they use the Internet, set healthy access limits, and protect against dangerous or inappropriate content, cyberbullying, and online predators. Qustodio is easy, superior and free.”
www.qustodio.com
3% remove it
 
Powered by Should I Remove It?

Scan qengine.exe - Powered by Reason Core Security