3DP_Chip.exe

3DP Chip

3DP

The application 3DP_Chip.exe, “3DP Chip by 3DP(www.3dpchip.com)” has been detected as a potentially unwanted program by 2 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from blogattach.naver.net and multiple other hosts.
Publisher:
3DP

Product:
3DP Chip

Description:
3DP Chip by 3DP(www.3dpchip.com)

Version:
1, 2, 0, 1

MD5:
9c480e713d0ca11e5ab3a46154631e31

SHA-1:
588e9077dd38173789adc55cceeb128268a7b308

Scanner detections:
2 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 5:41:48 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.3DP.Chip.Adload (M)
16.11.29.10

Rising Antivirus
PE:Malware.XPACK/RDM!5.1
23.00.65.14221

File size:
545 KB (558,080 bytes)

Product version:
1, 2, 0, 1

Copyright:
Copyright(c) 1999~2012 by 3DP

Original file name:
3DP_Chip.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Windows\System32\3dp_chip.exe

File PE Metadata
Compilation timestamp:
1/26/2012 8:20:53 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
12288:cILLhkv76oFzR5JtoaMd7VTfTqDlKT6ACKImSzJfCNbN5b:th679FzR5PRMDGDlKmKI7zJIPb

Entry address:
0x1000

Entry point:
68, E4, A0, 29, D9, E8, 45, 5F, 46, 00, 66, 21, 45, 04, 89, 2C, 24, FF, 74, 24, 04, 9C, E8, A1, 56, 46, 00, 89, 74, 24, 08, E8, 5B, 4C, 46, 00, 9E, D1, 00, 61, E9, 65, DE, 45, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9065  (probably packed)

Code size:
4.4 MB (4,614,144 bytes)

The file 3DP_Chip.exe has been seen being distributed by the following 2 URLs.

http://blogattach.naver.net/02971eadb7e7e63a14f797a1947f037dd18a739258/20120217_160_blogfile/.../3DP_Chip_v1201.exe

Remove 3DP_Chip.exe - Powered by Reason Core Security