pm_ax.ocx

Platte International Limited

The file pm_ax.ocx has been detected as malware by 9 anti-virus scanners.
Publisher:
Platte International Limited  (signed and verified)

Version:
1.0.0.0

MD5:
1cd532de157042c9858bb999a6f9345c

SHA-1:
40d513186ee460ba80081f7df736d4149ea9fbbd

Scanner detections:
9 / 68

Status:
Malware

Analysis date:
4/29/2024 4:51:03 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Agent.cexg
7.9.0.193

avast!
Win32:Trojan-gen {Other}
2014.9-170314

Dr.Web
Trojan.Xpass.origin
9.0.1.073

Fortinet FortiGate
PossibleThreat
3/14/2017

F-Prot
W32/Trojan2.GBWN
v6.4.4.4.56

G Data
Win32:Trojan-gen {Other}
17.3.19

McAfee
Artemis!1CD532DE1570
5600.6096

Prevx
Medium Risk Malware
3.0

Vba32 AntiVirus
suspected of Embedded.Trojan.Win32.Inject.nve
3.12.10.7

File size:
2.2 MB (2,256,392 bytes)

Product version:
1.0.0.0

File type:
OLE control extension (Win32 OCX)

Language:
English (Storbritannien)

Common path:
C:\Windows\System32\pm_ax.ocx

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
2/18/2009 1:00:00 AM

Valid to:
2/19/2010 12:59:59 AM

Subject:
CN=Platte International Limited, OU=Technical Development, O=Platte International Limited, L=Leeds, S=West Yorkshire, C=UK

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
724DB586248083F9261CE3920AAFFA6D

Registration
CLSID:
{9901D610-A360-4325-B787-D13BBF4F2A1C}

ProgID:
PlatteGateway.PlatteGatewayAX

COM registered:
Yes

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x683D4

Entry point:
55, 8B, EC, 83, C4, B4, B8, 7C, 81, 46, 00, E8, EC, EB, F9, FF, E8, AB, B7, F9, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 32, 13, 8B, C0, 02, 00, 8B, C0, 00, 8D, 40, 00, 00, 8D, 40, 00, 00, 8D, 40, 00, 1C, 4B, 40, 00, 1C, 4B, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 50, 21, 40, 00, D8, 22, 40, 00, 4C, 26, 40, 00, 32, 1F, 8B, C0, 52, 75, 6E, 74, 69, 6D, 65, 20, 65, 72, 72, 6F, 72, 20, 20, 20, 20, 20, 61, 74, 20, 30, 30, 30, 30, 30, 30, 30, 30, 00, 8B, C0...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
413 KB (422,912 bytes)

Remove pm_ax.ocx - Powered by Reason Core Security