autopatch.exe

Conquer Online

福建网龙计算机网络信息技术有限公司

The executable autopatch.exe has been detected as malware by 8 anti-virus scanners.
Publisher:
TQ Digital Entertainment  (signed by 福建网龙计算机网络信息技术有限公司)

Product:
Conquer Online

Version:
2007, 1210, 0, 123

MD5:
a0b9ac6780744fc4980a5d252ad3adc0

SHA-1:
25410b7adc458170846fff951c5b987277082113

SHA-256:
d4a85002c372886d8daa283a1bcff01bd3e47ddfc21fa87882623d237312d6af

Scanner detections:
8 / 68

Status:
Malware

Analysis date:
11/24/2024 6:08:20 PM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
UnclassifiedMalware
16762

IKARUS anti.virus
Trojan.Gendal
t3scan.2.0.127

McAfee
Artemis!A0B9AC678074
5600.6101

Norman
Malware.LDON
11.20170308

nProtect
Trojan/W32.Agent.1746208
13.08.14.01

Panda Antivirus
Suspicious file
17.03.08.11

Trend Micro House Call
TROJ_GEN.RCBH1D5
7.2.67

VIPRE Antivirus
Trojan.Win32.Generic
20494

File size:
1.7 MB (1,746,208 bytes)

Product version:
2007, 1210, 0, 123

Copyright:
Copyright (C) 2002-2007

Original file name:
Conquer.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\users\{user}\downloads\compressed\supremeco\autopatch.exe

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
7/11/2008 11:07:30 AM

Valid to:
7/11/2010 11:07:30 AM

Subject:
CN=福建网龙计算机网络信息技术有限公司, OU=Technical Dept., O=福建网龙计算机网络信息技术有限公司, L=Fu Zhou, S=Fu Jian, C=CN

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
61C3803E4E7A9E4E715448F51A9759F0

File PE Metadata
Compilation timestamp:
10/18/2008 5:04:13 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x10B0E1

Entry point:
55, 8B, EC, 6A, FF, 68, 00, 41, 55, 00, 68, 80, B3, 50, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, FC, 24, 54, 00, 59, 83, 0D, BC, 77, 59, 00, FF, 83, 0D, C0, 77, 59, 00, FF, FF, 15, F8, 24, 54, 00, 8B, 0D, 54, 5B, 59, 00, 89, 08, FF, 15, F4, 24, 54, 00, 8B, 0D, 50, 5B, 59, 00, 89, 08, A1, F0, 24, 54, 00, 8B, 00, A3, B8, 77, 59, 00, E8, 23, 55, FA, FF, 39, 1D, 20, 57, 58, 00, 75, 0C, 68, EE, 7B, 4B, 00, FF, 15, EC, 24...
 
[+]

Entropy:
6.3679

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
1.3 MB (1,314,816 bytes)

Remove autopatch.exe - Powered by Reason Core Security