vosrv.exe

The application vosrv.exe has been detected as a potentially unwanted program by 13 anti-malware scanners. It runs as a separate (within the context of its own process) windows Service named “VO Service component”. This file is typically installed with the program Remote Desktop Access (VuuPC) by CMI Limited which is a potentially unwanted software program.
MD5:
02065e86aed7b15b3e36e99b5d48f356

SHA-1:
ff546bf404d45a42e60f6899ac02daeb90e38c3f

SHA-256:
c38e4c253eb662f46cb6714818c877af16072e84a5da96a164fabee693f3abec

Scanner detections:
13 / 68

Status:
Potentially unwanted

Analysis date:
4/16/2024 8:28:13 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.12022188
803

Avira AntiVirus
TR/Rogue.12022188
7.11.182.186

avast!
Win32:Malware-gen
2014.9-141124

Baidu Antivirus
Adware.Win32.VOPackage
4.0.3.141124

Bitdefender
Trojan.Generic.12022188
1.0.20.1640

Emsisoft Anti-Malware
Trojan.Generic.12022188
8.14.11.24.02

ESET NOD32
Win32/VOPackage.AL (variant)
8.10655

F-Secure
Trojan.Generic.12022188
11.2014-24-11_2

G Data
Trojan.Generic.12022188
14.11.24

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.1.8.3.0

nProtect
Trojan.Generic.12022188
14.10.31.01

Reason Heuristics
Threat.Win.Reputation.IMP
14.11.24.2

VIPRE Antivirus
Trojan.Win32.Generic
34434

File size:
75 KB (76,800 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\vopackage\vosrv.exe

File PE Metadata
Compilation timestamp:
10/18/2014 12:40:13 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:GJKb+GCYCpMl7l/PhlZUH11mOOcBr5k5NfBN:fCp2rlSnmuGNfBN

Entry address:
0x6050

Entry point:
E8, 1A, 3A, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 5D, E9, 8C, 03, 00, 00, 8B, FF, 55, 8B, EC, 6A, 0A, 6A, 00, FF, 75, 08, E8, 46, 3D, 00, 00, 83, C4, 0C, 5D, C3, 8B, FF, 55, 8B, EC, 5D, E9, DF, FF, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 57, 56, 8B, 75, 0C, 8B, 4D, 10, 8B, 7D, 08, 8B, C1, 8B, D1, 03, C6, 3B, FE, 76, 08, 3B, F8, 0F, 82, A0, 01, 00, 00, 81, F9, 80, 00, 00, 00, 72, 1C, 83, 3D, 98, 3A, 41, 00, 00, 74, 13, 57, 56, 83, E7, 0F, 83, E6, 0F, 3B, FE, 5E, 5F, 75, 05, E9...
 
[+]

Entropy:
6.1633

Code size:
50.5 KB (51,712 bytes)

Service
Display name:
VO Service component

Service name:
servervo

Description:
Ongoing updates responsible service.

Type:
Win32OwnProcess


The file vosrv.exe has been discovered within the following program.

Developed and distributed through bundled installer from Click Me In. The software may be bundled by 3rd-party products using the InstallCore distribution platform.
vuupc.com/terms.html
About 82% of users remove it
 
Powered by Should I Remove It?

Remove vosrv.exe - Powered by Reason Core Security