appeonmultibrowserlauncher.exe

APPEON Multi Browser Launcher Application

Appeon Corporation

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘AppeonChromeWebSocketServer’.
Publisher:
APPEON  (signed by Appeon Corporation)

Product:
APPEON Multi Browser Launcher Application

Version:
1, 0, 0, 1

MD5:
8e02d73c452fba4b8ddfece317cd76f5

SHA-1:
191659aed589700bea797ceb48cf620e118af4a9

SHA-256:
e27caceaf053d091ecde843c56cc2dc1a05018a963b5dcd870275202b2d4ed79

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/15/2024 10:36:48 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
probably DLOADER.Trojan
9.0.1.05190

File size:
986.2 KB (1,009,880 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright (C) 2015

Original file name:
AppeonMultiBrowserLaunchre 201509025

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\appdata\local\appeon multi-browser plug-in\appeonmultibrowserlauncher.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
2/14/2016 7:00:00 PM

Valid to:
9/29/2016 7:59:59 PM

Subject:
CN=Appeon Corporation, O=Appeon Corporation, L=ShenZhen, S=GuangDong, C=CN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
763DA955BD2724D2CDCA32ADB8030889

File PE Metadata
Compilation timestamp:
5/30/2016 12:16:45 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:uOgntVWAlPxuAnXzFnOE6QpzEXEiTum3zQ0V9UgV/qUI6U/iV5cUmGsC20uOXPWf:uOgnNxuAnLMx4QcUmGY7CgWoMJO

Entry address:
0x84E66

Entry point:
E8, 21, 09, 01, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 56, 33, F6, 3B, C6, 75, 1C, E8, 1E, CE, FF, FF, 56, 56, 56, 56, 56, C7, 00, 16, 00, 00, 00, E8, 33, B4, FF, FF, 83, C4, 14, 33, C0, EB, 06, 8B, 40, 0C, 83, E0, 10, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 8B, 45, 08, 56, 33, F6, 3B, C6, 75, 1C, E8, EA, CD, FF, FF, 56, 56, 56, 56, 56, C7, 00, 16, 00, 00, 00, E8, FF, B3, FF, FF, 83, C4, 14, 33, C0, EB, 06, 8B, 40, 0C, 83, E0, 20, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 53, 56, 8B, 75, 08, 8B, 46, 0C, 8B...
 
[+]

Entropy:
6.6508

Code size:
697.5 KB (714,240 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
AppeonChromeWebSocketServer

Command:
C:\users\{user}\appdata\local\appeon multi-browser plug-in\appeonmultibrowserlauncher.exe


Scan appeonmultibrowserlauncher.exe - Powered by Reason Core Security