jinglinp.exe

流量精灵

Rice Electronics Co.,Ltd

The application jinglinp.exe by Rice Electronics Co.,Ltd has been detected as a potentially unwanted program by 28 anti-malware scanners.
Publisher:
精灵软件  (signed by Rice Electronics Co.,Ltd)

Product:
流量精灵

Version:
2012.9.23.94

MD5:
2720051703c646fc8613ffc63799d897

SHA-1:
786a5bea18c77132df3d32f821fda8e477c12dd0

SHA-256:
d75de206dea3adb6d222a093c20f18fb9d29c4568f1bae3f6e5601acefcf0019

Scanner detections:
28 / 68

Status:
Potentially unwanted

Analysis date:
11/23/2024 2:17:20 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Generic.443593
247

Agnitum Outpost
Adware.Agent
7.1.1

AhnLab V3 Security
Trojan/Win32.Clicker
2015.08.05

Avira AntiVirus
ADWARE/Agent.639920
8.3.1.6

Arcabit
Adware.Generic.D6C4C9
1.0.0.425

AVG
SHeur4
2017.0.2725

Baidu Antivirus
Hacktool.Win32.FlowSpirit
4.0.3.1661

Bitdefender
Adware.Generic.443593
1.0.20.765

Comodo Security
UnclassifiedMalware
22933

Dr.Web
Trojan.DownLoader9.16155
9.0.1.0153

Emsisoft Anti-Malware
Adware.Generic.443593
8.16.06.01.06

ESET NOD32
Win32/FlowSpirit potentially unsafe
10.12045

Fortinet FortiGate
Adware/Agent
6/1/2016

F-Secure
Adware.Generic.443593
11.2016-01-06_4

G Data
Adware.Generic.443593
16.6.25

K7 AntiVirus
Riskware
13.207.16786

McAfee
Artemis!2720051703C6
5600.6381

MicroWorld eScan
Adware.Generic.443593
17.0.0.459

NANO AntiVirus
Trojan.Win32.Parite.bdaxcz
0.30.24.2668

nProtect
Trojan-Clicker/W32.Agent.639920
15.08.04.01

Panda Antivirus
Trj/CI.A
16.06.01.06

Qihoo 360 Security
Win32/Virus.Adware.b27
1.0.0.1015

Quick Heal
AdWare.Agent.r4 (Not a Virus)
6.16.14.00

Sophos
Generic PUA HI (PUA)
4.98

Trend Micro
TROJ_GEN.R0EBC0EGA15
10.465.01

Vba32 AntiVirus
AdWare.Agent
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
42634

Zillya! Antivirus
Adware.Agent.Win32.8603
2.0.0.2329

File size:
624.9 KB (639,920 bytes)

Product version:
3.4.6.1

Copyright:
Copyright 2012 Spiritsoft All Rights Reserved.

Original file name:
jingling.exe

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, PRC)

Common path:
C:\Windows\System32\jinglinp.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/4/2011 7:00:00 AM

Valid to:
11/4/2012 6:59:59 AM

Subject:
CN="Rice Electronics Co.,Ltd", OU=VTN Support, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Rice Electronics Co.,Ltd", L=Beijing, S=Beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2AFDF409C5B747EF1F1BA5905A0DD798

File PE Metadata
Compilation timestamp:
9/22/2012 3:54:21 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:Dn0dkroR7YlH4M0KLzYUdSqjXuFgEukbN2hfKPHCiv/GTBS9VmRMVGkfMrw:Dn0nYlHLl/HNjlk+6Civ/GTc9F0c

Entry address:
0x49DF8

Entry point:
E8, 0C, BC, 00, 00, E9, 17, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8D, 42, FF, 5B, C3, 8D, A4, 24, 00, 00, 00, 00, 8D, 64, 24, 00, 33, C0, 8A, 44, 24, 08, 53, 8B, D8, C1, E0, 08, 8B, 54, 24, 08, F7, C2, 03, 00, 00, 00, 74, 15, 8A, 0A, 83, C2, 01, 3A, CB, 74, CF, 84, C9, 74, 51, F7, C2, 03, 00, 00, 00, 75, EB, 0B, D8, 57, 8B, C3, C1, E3, 10, 56, 0B, D8, 8B, 0A, BF, FF, FE, FE, 7E, 8B, C1, 8B, F7, 33, CB, 03, F0, 03, F9, 83, F1, FF, 83, F0, FF, 33, CF, 33, C6, 83, C2, 04, 81, E1...
 
[+]

Code size:
423.5 KB (433,664 bytes)

Remove jinglinp.exe - Powered by Reason Core Security