UpdateOptserve.exe

UpdateOptserve.exe released on 2007/04/12

Optlynx CO., LTD.

The application UpdateOptserve.exe by Optlynx CO. has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Optlynx CO., LTD.  (signed and verified)

Product:
UpdateOptserve.exe released on 2007/04/12

Version:
1.01

MD5:
c38c51c850cf0c1259cba74070b921b2

SHA-1:
7d2ecce2ef2a9aae2e6d8a67f8d8915d383310d3

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 4:14:34 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.OptlynxC (M)
16.4.17.5

File size:
37.6 KB (38,464 bytes)

Product version:
1.01

Original file name:
UpdateOptserve.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Windows\System32\updateoptserve.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/1/2007 9:00:00 AM

Valid to:
3/1/2008 8:59:59 AM

Subject:
CN="Optlynx CO., LTD.", OU=Coordination, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Optlynx CO., LTD.", L=Nishi-ku Osaka-shi, S=Osaka, C=JP

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
475D4973A000810A5409CC1F7132A4F1

File PE Metadata
Compilation timestamp:
4/12/2007 2:30:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
384:/TwPcgQRIMb37W0m12L6IG0yD1tXpD3QF0CLCcgrvO5bOM:/MPmt37W0m12L6XD3X533CL3t5bOM

Entry address:
0x14C8

Entry point:
68, E0, 15, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, B3, 72, F6, B0, 42, 3A, 45, 4D, A7, 30, E8, F9, 10, BB, 8F, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, BE, 48, 40, 00, 55, 70, 64, 61, 74, 65, 4F, 70, 74, 73, 65, 72, 76, 65, 00, 01, 00, 00, 00, 00, 07, 00, 00, 00, 2C, 1D, 40, 00, 07, 00, 00, 00, D4, 1C, 40, 00, 07, 00, 00, 00, 8C, 1C, 40, 00, 07, 00, 00, 00, 44, 1C, 40, 00, 07, 00, 00, 00, FC, 1B, 40, 00, 07, 00, 00, 00, A8, 1B, 40, 00...
 
[+]

Entropy:
4.8464

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
16 KB (16,384 bytes)

Remove UpdateOptserve.exe - Powered by Reason Core Security