ADSpiderEngineNT.exe

다잡아 AD-Spider

digitalonnet

The application ADSpiderEngineNT.exe, “AD-Spider 다잡아 엔진 서비스” by digitalonnet has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
(주)디지탈온넷  (signed by digitalonnet)

Product:
다잡아 AD-Spider

Description:
AD-Spider 다잡아 엔진 서비스

Version:
9, 0, 1, 5

MD5:
e2e0d970fcf35c1c4a17989f520336fc

SHA-1:
0fb810fab1470a1bc632c763072357573970fb9d

SHA-256:
83e758ad2d1a9831a90113547b2c97aad538a4f8accff5f1482cabb8f4df5a9d

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/15/2024 4:46:17 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.AdSpider (M)
17.2.28.8

File size:
352.4 KB (360,872 bytes)

Product version:
9, 0, 1, 5

Copyright:
Copyright (C) 2006-2014 Digitalonnet. All rights reserved.

Original file name:
ADSpiderEngineNT.exe

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\digitalonnet\ad-spider\adspiderenginent.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
5/18/2013 9:00:00 AM

Valid to:
6/18/2015 8:59:59 AM

Subject:
CN=digitalonnet, O=digitalonnet, L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
657BCCB13306BCCE913E33D25DEE1FB8

File PE Metadata
Compilation timestamp:
11/24/2014 2:35:14 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x24A7C

Entry point:
48, 83, EC, 28, E8, EF, 78, 00, 00, 48, 83, C4, 28, E9, 1A, FE, FF, FF, CC, CC, E9, 5F, 15, 00, 00, CC, CC, CC, 40, 53, 48, 83, EC, 20, 45, 8B, 18, 48, 8B, DA, 4C, 8B, C9, 41, 83, E3, F8, 41, F6, 00, 04, 4C, 8B, D1, 74, 13, 41, 8B, 40, 08, 4D, 63, 50, 04, F7, D8, 4C, 03, D1, 48, 63, C8, 4C, 23, D1, 49, 63, C3, 4A, 8B, 14, 10, 48, 8B, 43, 10, 8B, 48, 08, 48, 03, 4B, 08, F6, 41, 03, 0F, 74, 0C, 0F, B6, 41, 03, 83, E0, F0, 48, 98, 4C, 03, C8, 4C, 33, CA, 49, 8B, C9, 48, 83, C4, 20, 5B, E9, 25, 01, 00, 00, CC...
 
[+]

Entropy:
6.0131

Code size:
241 KB (246,784 bytes)

Remove ADSpiderEngineNT.exe - Powered by Reason Core Security