drivermax.exe

DriverMax

Innovative Solutions Grup SRL

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘DriverMax’. The file has been seen being downloaded from doc-10-18-docs.googleusercontent.com.
Publisher:
Innovative Solutions  (signed by Innovative Solutions Grup SRL)

Product:
DriverMax

Version:
7.44.0.738

MD5:
251a9179b3829443f22423bb305bfec0

SHA-1:
b249f804edcf7659346253af91232e00d0345c3d

SHA-256:
62e0d332b675177f8fdd1c952390826f4ddae323d9f92ae9b818124f9e610434

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 12:17:24 PM UTC  (today)

File size:
8.4 MB (8,795,000 bytes)

Product version:
7.44

Copyright:
Innovative Solutions

Trademarks:
Innovative Solutions

Original file name:
drivermax.exe

File type:
Executable application (Win32 EXE)

Language:
Romanian (Romania)

Common path:
C:\Program Files\innovative solutions\drivermax\drivermax.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/10/2014 3:30:00 AM

Valid to:
4/10/2015 4:29:59 AM

Subject:
CN=Innovative Solutions Grup SRL, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Innovative Solutions Grup SRL, L=Bucharest, S=Bucharest, C=RO

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
61F0BCB4F81FBE0476116752B57E8833

File PE Metadata
Compilation timestamp:
6/20/1992 2:52:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:/uqmzbtx+GI3nz6IXAQmv9Na7Fd6YUxA3OZjRQoYyWn0w0KdK7r09wk4bU7UvirU:CzbtkGmzXAdvvae+I1a0v49wkyEUviI

Entry address:
0x24A65C

Entry point:
55, 8B, EC, B9, 54, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, B8, DC, 9B, 64, 00, E8, 24, CE, DB, FF, 33, C0, 55, 68, 23, B7, 64, 00, 64, FF, 30, 64, 89, 20, E8, F1, C3, ED, FF, E8, 78, D6, FE, FF, 84, C0, 74, 4D, 6A, 01, 8D, 45, EC, E8, 4E, DD, FF, FF, 8B, 45, EC, E8, 4E, AA, DB, FF, 50, 68, 34, B7, 64, 00, 68, 38, B7, 64, 00, A1, 88, 3D, 65, 00, FF, 30, 68, 50, B7, 64, 00, A1, C8, 3A, 65, 00, FF, 30, 8D, 45, E8, BA, 03, 00, 00, 00, E8, EB, A8, DB, FF, 8B, 45, E8, E8, 1B, AA, DB, FF, 50, E8, 49...
 
[+]

Entropy:
5.5196

Developed / compiled with:
Microsoft Visual C++

Code size:
2.3 MB (2,403,328 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
DriverMax

Command:
"C:\Program Files\innovative solutions\drivermax\drivermax.exe" -agent


The file drivermax.exe has been seen being distributed by the following URL.

Scan drivermax.exe - Powered by Reason Core Security