qimlsrv.exe

IM Lock Professional

Comvigo Inc.

Publisher:
Comvigo, Inc.  (signed by Comvigo Inc.)

Product:
IM Lock Professional

Description:
Service Monitor

Version:
3.00.0001

MD5:
178a1e067b398fd6c9054e131af56b7d

SHA-1:
79c545c31ef260dc45a0d1d79fa52ff4a0effd5f

SHA-256:
0d637956edb25f8961844e4cb4aa03d4448ba87582dccbe00ce33bd82c8257e8

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/25/2024 5:13:57 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
BACKDOOR.Trojan
9.0.1.010

Rising Antivirus
Trojan.VBInject!4947
23.00.65.14108

File size:
238.1 KB (243,776 bytes)

Product version:
3.00.0001

Copyright:
Comvigo, Inc. 2007 All Rights Reserved

Trademarks:
Comvigo IM Lock

Original file name:
qimlsrv.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\syswow64\qimlsrv.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
1/25/2010 1:00:00 AM

Valid to:
1/26/2011 12:59:59 AM

Subject:
CN=Comvigo Inc., O=Comvigo Inc., STREET=15W675 82nd Street, L=Burr Ridge, S=Il, PostalCode=60527, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
5A656AF3856956BBA9711D191E9ED0E3

File PE Metadata
Compilation timestamp:
6/29/2010 1:53:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:PBDQeZT0WbJUaY/mm7l+eFxLh0cTd4kB/:SeZTjlImm7lPFxLh0cT6kx

Entry address:
0x363C

Entry point:
68, C0, 36, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 39, 8B, C7, 65, A9, 9F, 48, 47, A5, 2E, E9, 2D, 68, 26, 2A, 40, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 73, 74, 49, 6D, 61, 67, 6D, 73, 6E, 71, 70, 00, 20, 20, 00, 00, 00, 00, 01, 00, 06, 00, E8, 59, 40, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, 5C, 5B, 40, 00, B8, BB, 44, 00, 01, 00, 00, 00, BC, 36, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, BC, 36, 40, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
220 KB (225,280 bytes)

Scan qimlsrv.exe - Powered by Reason Core Security