maxdrivrupdater_service.exe

CONCEPTION SELECTION DISTRIBUTION INTERNATIONALE

The application maxdrivrupdater_service.exe by CONCEPTION SELECTION DISTRIBUTION INTERNATIONALE has been detected as a potentially unwanted program by 12 anti-malware scanners.
Publisher:
hasnilabs updater  (signed by CONCEPTION SELECTION DISTRIBUTION INTERNATIONALE)

Product:
hasnilabs updater

Version:
1.9

MD5:
76786ebfb4ca2ff2c0bec977cd0aa044

SHA-1:
88590a35ce92ec63d425053ca27cf60f7a158ae8

SHA-256:
81285b1f0571b9b854930ab25d3ba86622d9aa8a457f31ead45fbbfe779f87bc

Scanner detections:
12 / 68

Status:
Potentially unwanted

Analysis date:
5/11/2024 11:49:14 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Agent.1752552.9
8.3.2.2

AVG
Generic
2016.0.2957

Bkav FE
W32.HfsAdware
1.3.0.7237

Dr.Web
Program.Unwanted.711
9.0.1.0286

ESET NOD32
Win32/Agent.RLD (variant)
9.12267

IKARUS anti.virus
Trojan.Win32.Agent
t3scan.1.9.5.0

K7 AntiVirus
Unwanted-Program
13.210.17244

Kaspersky
not-a-virus:AdWare.Win32.Agent
14.0.0.1282

NANO AntiVirus
Riskware.Win32.Unwanted.dvtsiu
0.30.24.3283

Panda Antivirus
Generic Suspicious
15.10.13.12

Reason Heuristics
PUP.Optional.CONCEPTIONSELECTIONDISTRIBUTIONINTERNATIONALE
15.10.13.12

Sophos
Generic PUA II (PUA)
4.98

File size:
1.7 MB (1,752,552 bytes)

Product version:
1.9

Copyright:
hasnilabs updater

Original file name:
hasnilabsupdater.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\maxdrivrupdater_v62.2282\maxdrivrupdater_service.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
12/16/2014 2:36:07 PM

Valid to:
12/17/2015 2:36:07 PM

Subject:
CN=CONCEPTION SELECTION DISTRIBUTION INTERNATIONALE, OU=Xhopever, O=CONCEPTION SELECTION DISTRIBUTION INTERNATIONALE, L=Paris, C=FR

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112106B28CB2E4D8370E3EC157B3C5B3FF12

File PE Metadata
Compilation timestamp:
9/16/2015 12:03:50 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.24

CTPH (ssdeep):
24576:5ZfRQ7GIRqnpffqflJg6jY8Ls6inzxTVQ+U1OTd6So8wNOVoS3TkOVa9EKRtdWdq:5ZpHnu0xT1UfPNOVoS3ThVa9EKRtD0Fq

Entry address:
0x14C0

Entry point:
83, EC, 0C, C7, 05, 74, 50, 5A, 00, 01, 00, 00, 00, E8, 6E, 78, 03, 00, 83, C4, 0C, E9, A6, FC, FF, FF, 8D, B6, 00, 00, 00, 00, 83, EC, 0C, C7, 05, 74, 50, 5A, 00, 00, 00, 00, 00, E8, 4E, 78, 03, 00, 83, C4, 0C, E9, 86, FC, FF, FF, 90, 90, 90, 90, 90, 90, 55, 89, E5, 81, EC, 98, 04, 00, 00, 8D, 45, F8, 89, 8D, 90, FB, FF, FF, 89, A5, BC, FB, FF, FF, C7, 85, AC, FB, FF, FF, 20, B2, 4A, 00, C7, 85, B0, FB, FF, FF, 98, BE, 4A, 00, 89, 85, B4, FB, FF, FF, 8D, 85, 94, FB, FF, FF, C7, 85, B8, FB, FF, FF, 7B, 19...
 
[+]

Code size:
690 KB (706,560 bytes)

Remove maxdrivrupdater_service.exe - Powered by Reason Core Security