qimlsrv.exe

IM Lock Professional

Comvigo, Inc.

Publisher:
Comvigo, Inc.  (signed and verified)

Product:
IM Lock Professional

Description:
Service Monitor

Version:
3.00.0001

MD5:
35d9d2a86759b335ad00389f6ac4c95c

SHA-1:
d8c47a36e2135000e2f3654aaaa96d92cd3d914b

SHA-256:
88ea1a21990760419b5cc9b1bde71ad083f97e615ac3653d7d99d54f9ebc8650

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/25/2024 1:18:33 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
probably BACKDOOR.Trojan
9.0.1.05190

File size:
182 KB (186,376 bytes)

Product version:
3.00.0001

Copyright:
Comvigo, Inc. 2007 All Rights Reserved

Trademarks:
Comvigo IM Lock

Original file name:
qimlsrv.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Windows\System32\qimlsrv.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
1/14/2009 6:00:00 PM

Valid to:
1/15/2010 5:59:59 PM

Subject:
CN="Comvigo, Inc.", O="Comvigo, Inc.", STREET=52 South Washington St., L=Hinsdale, S=IL, PostalCode=60527, C=US

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
00FBBAFB24C41A3FA3E16E01222FDF592E

File PE Metadata
Compilation timestamp:
6/12/2009 9:31:35 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:ZaX/EqwlbtdRLUTsdPPPNLQ+aFh3FwS7HO/:WMZhUId1LQ9Fh1wSE

Entry address:
0x317C

Entry point:
68, C4, 31, 40, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 38, 00, 00, 00, 00, 00, 00, 00, 8E, 9D, E8, 91, DA, DC, 3E, 4B, A3, CA, AB, BA, FD, AA, 21, DC, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 6D, 73, 6E, 71, 70, 00, 00, 00, 00, 00, 00, 00, 56, 42, 35, 21, F0, 1F, 2A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 7E, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 0A, 00, 09, 04, 00, 00, 00, 00, 00, 00, 30, 66, 42, 00, 78, 39, 40, 00, 00, F8, B0, 01...
 
[+]

Entropy:
5.7531

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
168 KB (172,032 bytes)

Scan qimlsrv.exe - Powered by Reason Core Security