vosrv.exe

The application vosrv.exe has been detected as a potentially unwanted program by 19 anti-malware scanners. It runs as a separate (within the context of its own process) windows Service named “VO Service component”. This file is typically installed with the program Remote Desktop Access (VuuPC) by CMI Limited which is a potentially unwanted software program.
MD5:
d35699305e23867d686d91d53159d9ae

SHA-1:
6660f7ace93a23ac32484c5b55c3712893b95c10

SHA-256:
48fdf5040ab71051060deb501b2d5ede0879dfe49bd30a4c02fb991e08821a83

Scanner detections:
19 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 9:42:08 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.11830449
838

Avira AntiVirus
APPL/Downloader.Gen4
7.11.179.162

avast!
Win32:Malware-gen
141003-0

Baidu Antivirus
PUA.Win32.VOPackage
4.0.3.141019

Bitdefender
Trojan.Generic.11830449
1.0.20.1460

Emsisoft Anti-Malware
Trojan.Generic.11830449
8.14.10.19.04

ESET NOD32
Win32/VOPackage.W potentially unwanted application
7.0.302.0

Fortinet FortiGate
Riskware/VOPackage
10/19/2014

F-Secure
Trojan.Generic.11830449
11.2014-19-10_1

G Data
Trojan.Generic.11830449
14.10.24

IKARUS anti.virus
PUA.Vopackage
t3scan.1.7.8.0

K7 AntiVirus
Trojan
13.183.13550

McAfee
Artemis!857B2E76F091
5600.6972

MicroWorld eScan
Trojan.Generic.11830449
15.0.0.876

NANO AntiVirus
Riskware.Win32.Downware.dfepld
0.28.2.62440

nProtect
Trojan.Generic.11830449
14.10.02.01

Panda Antivirus
Trj/Genetic.gen
14.10.19.04

Reason Heuristics
Threat.Win.Reputation.IMP
14.10.19.16

Sophos
Generic PUA ED
4.98

File size:
70 KB (71,680 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\vopackage\vosrv.exe

File PE Metadata
Compilation timestamp:
9/22/2014 9:39:40 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:segEwagdLVKW1e+79JqBA9wJlB431/pKkcqyZVcLOVK0J0Dxz:segEwpLVZg+RcAqJopZ7h0J0Vz

Entry address:
0x31D8

Entry point:
E8, D2, 24, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 5D, E9, 9D, 0F, 00, 00, 8B, FF, 51, C7, 01, B4, C6, 40, 00, E8, 4F, 25, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 56, 8B, F1, E8, E3, FF, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, CC, FF, FF, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 83, C1, 09, 51, 83, C0, 09, 50, E8, 8D, 25, 00, 00, F7, D8, 59, 1B, C0, 59, 40, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 6A, 0A, 6A, 00, FF, 75, 08, E8, AB, 28, 00, 00, 83, C4, 0C, 5D, C3, 8B, FF, 55, 8B...
 
[+]

Entropy:
6.0752

Code size:
43.5 KB (44,544 bytes)

Service
Display name:
VO Service component

Service name:
servervo

Description:
Ongoing updates responsible service.

Type:
Win32OwnProcess


The file vosrv.exe has been discovered within the following program.

Developed and distributed through bundled installer from Click Me In. The software may be bundled by 3rd-party products using the InstallCore distribution platform.
vuupc.com/terms.html
About 82% of users remove it
 
Powered by Should I Remove It?

Remove vosrv.exe - Powered by Reason Core Security