em-k41a-33020-dlm.exe

Nuance Download Manager

Solid State Networks I, LLC

Publisher:
Nuance  (signed by Solid State Networks I, LLC)

Product:
Nuance Download Manager

Version:
3.6.5.0

MD5:
f34bd4b0db66e8e1112719627bd74f99

SHA-1:
b96af4b9232b50c6fdfa34589bea146fdec83182

SHA-256:
ec2358613c8d764de374cc1e55ff950c384794e6ccb9a16301dc92bde65ca75b

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/26/2024 7:04:01 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Detection.Undefined
7.0.302.0

File size:
1.3 MB (1,384,960 bytes)

Product version:
3.6.5.0

Copyright:
Copyright © 2015

Original file name:
host.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\em-k41a-33020-dlm.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
4/27/2014 8:00:00 PM

Valid to:
7/21/2016 7:59:59 PM

Subject:
CN="Solid State Networks I, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Solid State Networks I, LLC", L=Tempe, S=Arizona, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5A28452725877A8A1F08B19EAB2D8BEA

File PE Metadata
Compilation timestamp:
10/14/2014 11:01:00 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:u3JsEFfQLtUg/6EnXYdU8N/hxykRF+wF2hEp1ldccLUjrwaD17jGsco:9Ex896IodUdk+dhclYrrD17ai

Entry address:
0x66591

Entry point:
E8, D6, 52, 00, 00, E9, 78, FE, FF, FF, 6A, 0C, 68, D8, C6, 48, 00, E8, D5, 50, 00, 00, 8B, 75, 08, 85, F6, 74, 75, 83, 3D, 20, 8D, 49, 00, 03, 75, 43, 6A, 04, E8, C0, 54, 00, 00, 59, 83, 65, FC, 00, 56, E8, E8, 54, 00, 00, 59, 89, 45, E4, 85, C0, 74, 09, 56, 50, E8, 09, 55, 00, 00, 59, 59, C7, 45, FC, FE, FF, FF, FF, E8, 0B, 00, 00, 00, 83, 7D, E4, 00, 75, 37, FF, 75, 08, EB, 0A, 6A, 04, E8, AC, 53, 00, 00, 59, C3, 56, 6A, 00, FF, 35, 94, 32, 49, 00, FF, 15, 40, C1, 47, 00, 85, C0, 75, 16, E8, BE, 2E, 00...
 
[+]

Entropy:
7.5756

Code size:
489 KB (500,736 bytes)

The file em-k41a-33020-dlm.exe has been seen being distributed by the following 17 URLs.

http://wgtot04.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7B3C35CDB57290E4E8CF9953D0604F11ED68F8CF712B35F3BD2CA9FA63420CA7C6546DCDA7FF1A91AD028D1A19C586BA46182FF24CF53BCD51EDD024BF768CA4360451C577DBEF2976/.../EM-K41A-33020-DLM.exe

http://wgtot44.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7B04F6F8C060A83FD32B6D2983E0AD920DB9FDA41D895126038B06F6BEA82108F1EDEF7848549BB2132EBB72387EE998571335F34C9677A374C1E27EE040E34B688F5DC70B1E40C906/.../EM-K41A-33020-DLM.exe

http://wgtot04.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7BAFD96816EE8D89512B6D2983E0AD920DB7DD7596A54971F33E2CC045550A6EC6E13DD92E58ADCED03553E89324D07920D9A490EBBB010E672E337BDB1BBF866297A693A7BBF30D56/.../EM-K41A-33020-DLM.exe

http://wgtot04.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7B3C35CDB57290E4E80ABB5042C83AC80FB441E6E486435E58EEA76CC66E679B5BB53A2AB34A042CC03976480A874D4B68518E94CCA1163057990A70387206617D5C301D4CF6797C8A/.../EM-K41A-33020-DLM.exe

http://wgtot04.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7B3C35CDB57290E4E8BB54EF2045CC633E57C8CBA4E042A51E4681FF953E761C28278966D0E1D7FB88FC6F2ACA74892C98FFD2D166C63ED7CBF50CAA6078AC774B0451C577DBEF2976/.../EM-K41A-33020-DLM.exe

http://wgtot04.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7B3C35CDB57290E4E8BB54EF2045CC633E54EF5CAA41CC35ED24BA3EF4EE6D4B45324A2EBC6D2E11492AC251D9CC7D3AEFFFD2D166C63ED7CBBC6F70218A4407AB0451C577DBEF2976/.../EM-K41A-33020-DLM.exe

http://wgtot44.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7B5EF54C4E052AB5252B6D2983E0AD920D51F423E47983259E034E0A1F491773441EE76B88C25C8CC710189927518FDB8790835D5A984D72D4322F37D009C5E64D8F5DC70B1E40C906/.../EM-K41A-33020-DLM.exe

http://wgtot04.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7B3C35CDB57290E4E8A375251E3B477FDB594D08DDC7B9188C9058EA8EEFE19A8ECC7A61BCB431A4EEAD8FDAA0B823BAB3BCAED1BCF48DFA1433205DEB3C076E9F5C301D4CF6797C8A/.../EM-K41A-33020-DLM.exe

http://wgtot04.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7B3C35CDB57290E4E8338A4BCEC664B79A6425F60E5E03798D39293C8BE4D18D75E97A5F6BDE88718BCFBD44751EF05F517CC6F78356FBF703456555303EA224455C301D4CF6797C8A/.../EM-K41A-33020-DLM.exe

http://wgtot44.digitalriver.com/wgt/9B5A4FCEF11DA80C/171F14235882A3D34841170D5B9DEF7BB87E03CE76174F4E2B6D2983E0AD920D42CA9FD66B8A874115096B48DD4636F732720B29DD947390A997AA50EC8DF10D70FE5D5CAF2732DDA35FAB7652B68DD18F5DC70B1E40C906/.../EM-K41A-33020-DLM.exe

Scan em-k41a-33020-dlm.exe - Powered by Reason Core Security