audiolog.exe

Escvri

OLX

The executable audiolog.exe has been detected as malware by 1 anti-virus scanner.
Publisher:
OLX  (signed and verified)

Product:
Escvri

Version:
1.0.0.0

MD5:
a67450ce247799feaaf78549057afbd4

SHA-1:
d58395199357f650cf048435f936e186a8a83d0b

SHA-256:
2e0035200c393316a838e0f2bded2044f24ee53f3ebf66b8fd52208d8894be40

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/6/2024 1:57:59 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.8.27.14

File size:
16.7 MB (17,535,928 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
W1.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\roaming\audiolog.exe

Digital Signature
Signed by:

Authority:
OLX

Valid from:
10/4/2015 11:37:02 AM

Valid to:
10/4/2016 11:37:02 AM

Subject:
CN=www.olx.pt, O=OLX, L=Lisboa, S=Lisboa, C=PN

Issuer:
CN=www.olx.pt, O=OLX, L=Lisboa, S=Lisboa, C=PN

Serial number:
00D2E418114F6B0AC6

File PE Metadata
Compilation timestamp:
10/10/2015 12:07:47 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:u8/Fzf5W3+zninwbghjiZD6MP7jPoDFquCJjE2Pu1qaU33djaVhHYhnZijp2kJe5:9

Entry address:
0x10B9C1E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
16.7 MB (17,530,368 bytes)

Remove audiolog.exe - Powered by Reason Core Security