start_drivergenius_portable_ukrainian_(run_as_admin).exe

sign

The executable start_drivergenius_portable_ukrainian_(run_as_admin).exe has been detected as malware by 6 anti-virus scanners.
Publisher:
sign  (signed and verified)

Version:
1. 0. 0. 0

MD5:
6f174dcd5cefdd7d8fe3b6800d959a4a

SHA-1:
910c578759a6ebca759fcfea28bd1a9072cd34bd

SHA-256:
00163d672e0b0e4368065e524eb646e8e77023a4a56be0712f119f18156366b1

Scanner detections:
6 / 68

Status:
Malware

Analysis date:
8/6/2025 6:09:59 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Malware-gen
141025-0

AVG
Trojan horse Generic33.AUJU
2014.0.4189

Dr.Web
Trojan.Proxy.24281
9.0.1.05190

IKARUS anti.virus
Virus.Win32.Heur
t3scan.1.8.3.0

NANO AntiVirus
Trojan.Win32.ATRAPS.brmzvy
0.28.6.62995

Vba32 AntiVirus
TrojanDownloader.VBS.Small
3.12.26.3

File size:
282.1 KB (288,856 bytes)

Product version:
1. 0. 0. 0

Copyright:
Hobo (hoboman50)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\drivergenius pro combi 2013new portable by hobo\drivergenius pro combi portable by hobo\start_drivergenius_portable_ukrainian_(run_as_admin).exe

Digital Signature
Signed by:

Authority:
sign Certificate Authority

Valid from:
10/11/2014 3:31:53 PM

Valid to:
10/11/2044 3:31:53 PM

Subject:
CN=sign

Issuer:
CN=sign Certificate Authority

Serial number:
F6529FEA07D859AD309FC846EF24530C

File PE Metadata
Compilation timestamp:
3/30/2013 11:01:24 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:LLHP/jXUrIc2spE4D2IJ26hmvhcAz+tolIxMil7JXi:LLv/jkrIc2seI2TYocWIr7i

Entry address:
0x4F001

Entry point:
60, E8, 03, 00, 00, 00, E9, EB, 04, 5D, 45, 55, C3, E8, 01, 00, 00, 00, EB, 5D, BB, ED, FF, FF, FF, 03, DD, 81, EB, 00, F0, 04, 00, 83, BD, 88, 04, 00, 00, 00, 89, 9D, 88, 04, 00, 00, 0F, 85, CB, 03, 00, 00, 8D, 85, 94, 04, 00, 00, 50, FF, 95, A9, 0F, 00, 00, 89, 85, 8C, 04, 00, 00, 8B, F0, 8D, 7D, 51, 57, 56, FF, 95, A5, 0F, 00, 00, AB, B0, 00, AE, 75, FD, 38, 07, 75, EE, 8D, 45, 7A, FF, E0, 56, 69, 72, 74, 75, 61, 6C, 41, 6C, 6C, 6F, 63, 00, 56, 69, 72, 74, 75, 61, 6C, 46, 72, 65, 65, 00, 56, 69, 72, 74...
 
[+]

Packer / compiler:
ASPack v2.12

Code size:
16 KB (16,384 bytes)