svc.exe

Mpyre Software, Inc.

The application svc.exe by Mpyre Software has been detected as a potentially unwanted program by 16 anti-malware scanners.
Publisher:
Mpyre Software, Inc.  (signed and verified)

MD5:
17b613b1fc5c64e5975099992ec96c89

SHA-1:
8611e5b7112136a054dd4d3273b98d03760ee685

Scanner detections:
16 / 68

Status:
Potentially unwanted

Analysis date:
4/24/2024 1:59:23 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.ExtenBro
2014.12.12

Avira AntiVirus
JS/ExtenBro.586208
7.11.194.188

avast!
Win32:Malware-gen
2014.9-150111

AVG
Generic11_c
2016.0.3233

Comodo Security
UnclassifiedMalware
20338

ESET NOD32
JS/ExtenBro.FBook.AW (variant)
9.10864

Fortinet FortiGate
W32/ExtenBro_FBook.AW!tr
1/11/2015

IKARUS anti.virus
Trojan.JS.ExtenBro
t3scan.1.8.5.0

Malwarebytes
PUP.Optional.Mypre
v2015.01.11.06

McAfee
RDN/Generic.dx!dgl
5600.6889

Norman
Suspicious_Gen5.AXJRO
11.20150111

Qihoo 360 Security
Script/Trojan.BO.c5d
1.0.0.1015

Sophos
Mal/Cleaman-B
4.98

Trend Micro House Call
TROJ_FEBIMSG.A
7.2.11

Trend Micro
TROJ_FEBIMSG.A
10.465.11

VIPRE Antivirus
Trojan.Win32.Generic
35642

File size:
572.5 KB (586,208 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\winp\svc.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
9/19/2012 3:00:00 AM

Valid to:
9/30/2015 3:00:00 PM

Subject:
CN="Mpyre Software, Inc.", O="Mpyre Software, Inc.", L=Mississauga, S=Ontario, C=CA

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
0B9F83CAA06EB3463CB393D128F62D70

File PE Metadata
Compilation timestamp:
4/29/2014 3:05:51 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:9NUM1I9J2mWI6GP7AXEhCKKugip69dlxB1xL55VMEN8Qnzd4WA2faVVX:MM1Ibrmmm3zip6PxL5AgTeW8VX

Entry address:
0x1DECA0

Entry point:
60, BE, 00, 40, 55, 00, 8D, BE, 00, D0, EA, FF, C7, 87, 0C, 5C, 19, 00, 63, 37, 00, 9B, 57, 83, CD, FF, EB, 0E, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46...
 
[+]

Entropy:
7.9137

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.22 (Delphi) stub

Code size:
556 KB (569,344 bytes)

Remove svc.exe - Powered by Reason Core Security