voacfg.exe

Windows VOA

SAMJUNG TECHNOLOGY Co., Ltd

The application voacfg.exe by SAMJUNG TECHNOLOGY Co. has been detected as adware by 4 anti-malware scanners.
Publisher:
Samjung Technology  (signed by SAMJUNG TECHNOLOGY Co., Ltd)

Product:
Windows VOA

Version:
1.0.0.1

MD5:
aa538195f3d6b7cf210a225e884b6a2f

SHA-1:
1ce9513fa8c62bff72a32aa78984b3f65d1d1bcb

SHA-256:
66aee1174189f198beac505197ddf74f90015c5779013044e85dec535e8fecbd

Scanner detections:
4 / 68

Status:
Adware

Analysis date:
4/19/2024 1:32:38 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
Trojan.Adkor.21
9.0.1.0167

nProtect
Adware/W32.KrAdword.77928
13.08.16.03

Reason Heuristics
PUP.SAMJUNGTECHNOLOGYCo.G
14.8.15.15

Trend Micro House Call
TROJ_GEN.F47V0508
7.2.167

File size:
76.1 KB (77,928 bytes)

Product version:
1.0.0.1

Copyright:
Samjung Technology

Original file name:
voacfg.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\windows voa\voacfg.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
4/16/2013 8:00:00 PM

Valid to:
4/17/2014 7:59:59 PM

Subject:
CN="SAMJUNG TECHNOLOGY Co., Ltd", OU=Dev Team, O="SAMJUNG TECHNOLOGY Co., Ltd", L=Seocho-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
312EDE4AE66F959F92D07E88F82DEBD3

File PE Metadata
Compilation timestamp:
4/29/2013 9:56:33 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:RTvIA+CfW9Zcadj69fC/fPfY0NokCHKM8NuUEO:FI5Cica40XY0N6HKM8NCO

Entry address:
0x3999

Entry point:
E8, 4C, 41, 00, 00, E9, 95, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 69, 33, C0, 8A, 44, 24, 08, 84, C0, 75, 16, 81, FA, 80, 00, 00, 00, 72, 0E, 83, 3D, 44, 26, 41, 00, 00, 74, 05, E9, A9, 41, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B, C8, C1, E0, 10, 03, C1, 8B, CA, 83, E2, 03, C1, E9, 02, 74, 06, F3, AB, 85, D2, 74, 0A, 88, 07, 83, C7...
 
[+]

Entropy:
6.2535

Code size:
43 KB (44,032 bytes)

Remove voacfg.exe - Powered by Reason Core Security