tandemrunner.exe

The application tandemrunner.exe has been detected as a potentially unwanted program by 13 anti-malware scanners.
MD5:
682a1520938d294869ca559a3dedb976

SHA-1:
04cd1ceb40a89fe496a9e5dd47422cca5a96d040

SHA-256:
85fbb7f192146c07be76f22d82ee742f3070a106b8ecf10d133078c60f9a1f5d

Scanner detections:
13 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 9:26:41 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Application.Generic.764833
707

Avira AntiVirus
ADWARE/Adware.Gen2
7.11.206.130

AVG
Generic_r
2016.0.3185

Baidu Antivirus
Adware.Win64.AddLyrics
4.0.3.15227

Bitdefender
Application.Generic.764833
1.0.20.290

ESET NOD32
Win64/Adware.AddLyrics (variant)
9.11112

F-Secure
Application.Generic.764833
11.2015-27-02_6

G Data
Application.Generic.764833
15.2.25

McAfee
RDN/Generic PUP.x!cnj
5600.6841

MicroWorld eScan
Application.Generic.764833
16.0.0.174

Panda Antivirus
Trj/CI.A
15.02.27.09

Sophos
AddLyrics
4.98

VIPRE Antivirus
Revizer
37198

File size:
212 KB (217,088 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\v01re-markable\x64\tandemrunner.exe

File PE Metadata
Compilation timestamp:
7/6/2014 10:28:03 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:grRkZcQfhVF6f006EuqZuPJVIjcp/T3fXkXG4TTZv3q7mXKmIO+jCvjSR7F9KAR:EkTi00NuqQf5TvkG4TlvayrwCra7T/

Entry address:
0xD378

Entry point:
48, 83, EC, 28, E8, 3F, 6D, 00, 00, 48, 83, C4, 28, E9, 02, 00, 00, 00, CC, CC, 48, 89, 5C, 24, 10, 48, 89, 74, 24, 18, 57, 48, 83, EC, 30, E8, 28, 4B, 00, 00, 0F, B7, F0, B9, 02, 00, 00, 00, E8, CB, 6C, 00, 00, B8, 4D, 5A, 00, 00, 48, 8D, 3D, 47, 2C, FF, FF, 66, 39, 05, 40, 2C, FF, FF, 74, 04, 33, DB, EB, 31, 48, 63, 05, 6F, 2C, FF, FF, 48, 03, C7, 81, 38, 50, 45, 00, 00, 75, EA, B9, 0B, 02, 00, 00, 66, 39, 48, 18, 75, DF, 33, DB, 83, B8, 84, 00, 00, 00, 0E, 76, 09, 39, 98, F8, 00, 00, 00, 0F, 95, C3, 89...
 
[+]

Entropy:
6.2830

Code size:
118 KB (120,832 bytes)

Remove tandemrunner.exe - Powered by Reason Core Security