drivermaximizer.exe

Driver Maximizer

CS Support Network Limited

The application drivermaximizer.exe by CS Support Network Limited has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. While running, it connects to the Internet address mail.passwords.smartpctools.com on port 80 using the HTTP protocol.
Publisher:
Solid Tech  (signed by CS Support Network Limited)

Product:
Driver Maximizer

Version:
3.1.0.5

MD5:
e0c7d1db79495a4d7f735c8827e05f1c

SHA-1:
c9fd9407bb3f9b7b20ffcef67848a3dad783bc86

SHA-256:
a020fd83317e5028a1b1a46ff03f37d5c8882798d5c0cc9c7fed17e1527684d2

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 4:37:12 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.CSSupport.SolidTec.Meta (L)
16.7.7.22

File size:
4.2 MB (4,403,712 bytes)

Product version:
4.0

Copyright:
Copyright 2016 Solid Tech

Trademarks:
Copyright 2016 Solid Tech

Original file name:
DriverMaximizer

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\driver maximizer\drivermaximizer.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
5/20/2015 10:23:39 AM

Valid to:
5/20/2016 10:23:39 AM

Subject:
CN=CS Support Network Limited, O=CS Support Network Limited, L=Sliema, C=MT

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
2F723F75B6EC005B

File PE Metadata
Compilation timestamp:
4/5/2016 1:10:09 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:cNDAvP5pSVe7TfZj34VWnkGrh4UOCnQClHFK8cF8:eg3Tfl34UOCU8A8

Entry address:
0x36EA64

Entry point:
55, 8B, EC, B9, 07, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, 57, B8, 58, A4, 75, 00, E8, D3, CB, C9, FF, 33, C0, 55, 68, 1C, EF, 76, 00, 64, FF, 30, 64, 89, 20, E8, FC, D2, EE, FF, 8D, 55, EC, B8, 01, 00, 00, 00, E8, D7, 5D, C9, FF, 8B, 45, EC, BA, 38, EF, 76, 00, E8, 46, 99, C9, FF, 75, 31, 68, 50, EF, 76, 00, 6A, 00, 68, 01, 00, 1F, 00, E8, 4F, E4, C9, FF, 85, C0, 0F, 85, 38, 04, 00, 00, 68, 50, EF, 76, 00, 6A, 00, 6A, 00, E8, 45, DF, C9, FF, E8, 0C, A8, FE, FF, E9, 20, 04, 00, 00, 8D, 55, E8...
 
[+]

Entropy:
6.4521

Developed / compiled with:
Microsoft Visual C++

Code size:
3.4 MB (3,593,216 bytes)

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to mail.passwords.smartpctools.com  (173.192.91.180:80)

Remove drivermaximizer.exe - Powered by Reason Core Security