Accenture

Publisher Information

Accenture is a software developer located in Chicago, Illinois in the United States*. Thre are 10 additional code signing certificates issued to this publisher.
Authority:
VeriSign, Inc.

Valid from:
1/2/2013 7:00:00 PM

Valid to:
3/4/2015 6:59:59 PM

Subject:
CN=Accenture, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Accenture, L=Chicago, S=Illinois, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
57c7fef45ce5bea023a2a31c33a069ce

Status:
Inconclusive detections from multiple engines

Scan engine
Details
Detections

CMC Antivirus
Trojan.Win32.Generic!O
78.79%

Vba32 AntiVirus
Trojan.Autoit.Wirus, Trojan.Autoit.F
27.27%

G Data
Win32.Trojan.Agent.AJ8YJO, Win32.Trojan.Agent.S90R1L, Trojan.Generic.12588425, Trojan.GenericKD.1780929, Gen:Trojan.Heur.AutoIT
24.24%

Trend Micro House Call
Suspicious_GEN.F47V0720, Suspicious_GEN.F47V0203, Suspicious_GEN.F47V0114, TROJ_GEN.F47V0522, Suspicious_GEN.F47V0706, Suspicious_GEN.F47V0722
24.24%

IKARUS anti.virus
Trojan.Downloader-TOU, Worm.SuspectCRC, Trojan.Win32.Agent, Trojan.Win32.Spy, Trojan.SuspectCRC, Win32.SuspectCrc
24.24%

Sophos
Troj/Autoit-SI
21.21%

Commtouch SDK
W32/GenBl.CEFFA62B!Olympus, W32/GenBl.5F60C506!Olympus, W32/GenBl.BA8DAD1E!Olympus, W32/GenBl.AE4D82D7!Olympus, W32/GenBl.DF1CB070!Olympus
18.18%

McAfee
Artemis!2F4382CC4607, Artemis!86F636349606, Artemis!EA98354F7978, Artemis!6A6C680826E8, Artemis!DF1CB070BD6F, Artemis!9A321AAB8FEB
18.18%

avast!
Win32:Downloader-TOU [Trj]
15.15%

McAfee Web Gateway
Artemis, Artemis!DF1CB070BD6F, Artemis!Trojan
15.15%

4 / 68      (inconclusive)
aju_facesop.exe  (a2153dfa133ef3504abb313483ae15cc)

0 / 68
cio_lyncclient2010_x86.exe (Microsoft Lync 2010 by sw)  (a41c2319aa806890681c1457e345002e)

0 / 68

2 / 68
preconnect_trjrll55os5e4r454jlmcv45.exe  (fdbf0743b32289c53ae34e2ec6da0156)

0 / 68
websense cloud_02022015.exe (Websense Cloud by Accenture)  (d47c3fcab74a7552a5c23a89e00bbb94)

0 / 68
2447c6.msi  (eb6c23ac83f7e5b61642be99ecdd36dd)

0 / 68

2 / 68
aju_postop.exe  (0f01c1ee17f2b86d4281025598445a26)

0 / 68
pinconnect.exe  (f0aa2414275f243422a5743c3d7a5701)

0 / 68
visioviewer1.0.0.0.a.exe  (4ddf86640d954894c922cf957666e81e)

8 / 68      (Malware)
aju_deets.exe  (9a321aab8feb0663d0f35c84d6ee82b9)

0 / 68
preconnect_0ygt5muhtsvxxbespfst0ne3.exe  (7a02c6f79b09f821b90c231b5557be79)

3 / 68
preconnect_wo5mplm02y2sn345phkki23l.exe  (2f99fdad4bc0eb6d7c9582cd9e9fbd14)

9 / 68      (Malware)
bloatbuster.exe  (df1cb070bd6fe55013a21cd842df4dd6)

0 / 68
aju_deets.exe  (48ed01ce4cd5c180fcb1589f4b95c41c)

2 / 68
aju_postop.exe  (ae4d82d7cd420a4fa56c78a0a9f332f2)

5 / 68      (inconclusive)
aju_vip.exe  (ec202467b4aa3bfd925ffcdeffe05204)

0 / 68
preconnect_xijxgt55xgehjmi1dfaprjaw.exe  (456b382a66d0b253d358cbf26e86f717)

5 / 68      (Malware)
aju_vip.exe  (2f657bd68d14800842f47c8554ff0051)

0 / 68
lyncclientwithupdate4388_x86_32bit.exe  (709af57bd10ca55db28f8cde4531d3f2)

0 / 68
lyncclientwithupdate4388_x64bit.exe  (dc8e891641658a512f060eabf25f4754)

3 / 68
aju_wulu.exe  (f49a0d639d0317d8f6acfc3a7aa4d642)

20 / 68    (Malware)
aju_deets.exe  (6a6c680826e80c43fd00e6c3a1c3b54f)

1 / 68
preconnect_ce3mkw55pbodxb45jbg23azu.exe  (8519fe2275f38eb4b5d7cf654a769a0a)

0 / 68
lyncclientwithupdate4388_x64.exe  (552b0e70471ebfe877433766cee13ee6)

1 / 68
preconnectus_vdt5w0jqkkcha2adrreput55.exe  (e48cd93659842abb92e37726d45531c0)

4 / 68      (inconclusive)
aju_welp.exe  (ba8dad1e4a15db827535dc98ad6d939d)

1 / 68
aju_vip.exe  (ad8976a661e1998f365130dcfff88a0c)

3 / 68
preconnect_qntpknqkqs1ui2yfm0zvqc45.exe  (6485568e6cd292d53132c6bd79ed41d2)

 
Latest 30 of 83 files

Downloads URLs for files signed by Accenture.

4 / 68      (inconclusive)
http://dude.ads-gdn.com/.../AJU_welp.exe  (ba8dad1e4a15db827535dc98ad6d939d)

1 / 68

14 / 68    (Malware)
http://dude.ads-gdn.com/.../DEETs.exe  (86f636349606d20b99eb9bd82290ebb5)

1 / 68
http://aju.geeksquad.com/.../PreConnectInfo.aspx?GetPreConnectExe=1  (preconnectus_45uotd55rwbrtpybqoqbx555.exe)

3 / 68

3 / 68
http://aju.geeksquad.com/.../PreConnectInfo.aspx?GetPreConnectExe=1  (preconnect_hwfcjneo13zvu055qdzflkvq.exe)

2 / 68

2 / 68
http://aju.geeksquad.com/.../PreConnectInfo.aspx?GetPreConnectExe=1  (preconnectus_fq0e00ntzgnn0n45cqzywdj3.exe)

1 / 68
http://dude.ads-gdn.com/.../AJU_PostOp.exe  (ace7028134731b0d8316bc04f325b78c)

1 / 68
http://aju.geeksquad.com/.../PreConnectInfo.aspx?GetPreConnectExe=1  (preconnectus_5bvj4y3l2c4aue55ytb53h55.exe)

1 / 68
http://aju.geeksquad.com/.../PreConnectInfo.aspx?GetPreConnectExe=1  (preconnectus_s2lpelnoqdv0o0effqhnnp55.exe)

1 / 68
http://aju.geeksquad.com/.../PreConnectInfo.aspx?GetPreConnectExe=1  (preconnectus_toewex55sns13y552i0lz3ul.exe)

The following websites host and distribute files published by Accenture.

The certificates below are also signed by Accenture.

4A3D70097E83AF089428F3F5A798ED80  (Mar 12, 2015 to Apr 11, 2017)

60C65C437D0E866AEC976AAEA431AAAB  (Mar 12, 2015 to Apr 11, 2017)

3F83F3E9FA7ABD847A24BE6FA7EBFF67  (Jan 02, 2013 to Mar 04, 2015)

08597F3C7ADF2531E549A1CA995D4EE0  (Jan 21, 2011 to Jan 20, 2013)

2A23B9710D2EC83BB76362040D82BDDB  (Jan 20, 2011 to Jan 20, 2013)

5D8FD6F71E9D6EB34AD11A6FECD52A14  (Oct 12, 2009 to Oct 13, 2011)

2B49788772652463237D51CEE5212D2C  (Aug 21, 2009 to Sep 19, 2011)

10AE984DA23375E31347BB387DBF8038  (Feb 01, 2009 to Feb 02, 2011)

5B840674DFEB94646EC7C97BB536B676  (Sep 19, 2007 to Sep 19, 2009)

3706329F18BA2CEBD3AB3028D356D1BB  (Apr 30, 2002 to May 01, 2003)

10 of 10 code signing certificates issued

* Note, the details and description above are based on the code signing digital signature issued to Accenture by VeriSign, Inc. on January 02, 2013 with the serial number '57c7fef45ce5bea023a2a31c33a069ce'.