kdz_fw_upd.exe

MOD UpTestEX Application

LG

Publisher:
LG

Product:
MOD UpTestEX Application

Description:
MOD UpTestEX MFC Application

Version:
1, 0, 4, 4

MD5:
149d4d1eeb4fc7a2195bae448baf0a32

SHA-1:
add35b1424bdfce5a09699a0967c317d75088333

SHA-256:
31b4227f419a31ed10555341a58104af2d96a0c3d61134a3ec2d9dda9ca23368

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/2/2024 1:38:36 PM UTC  (today)

Scan engine
Detection
Engine version

ViRobot
Backdoor.Win32.A.Hupigon.391096
2011.4.7.4223

File size:
381.9 KB (391,096 bytes)

Product version:
1, 0, 4, 4

Copyright:
LG

Original file name:
UpTestEX.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
9/30/2009 4:30:01 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:MUcIV1AdFP8LU8ZxB26xSpxQ4XQiWsJ41buDJpsT7hHaYcl8XHwmtTBSN1rnXWxH:YQ1AdFP8LU8EXpxQsmYcFHc0HwmtTcv4

Entry address:
0x32A8C

Entry point:
55, 8B, EC, 6A, FF, 68, 38, D5, 43, 00, 68, 18, 2C, 43, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, F0, 85, 43, 00, 59, 83, 0D, 00, 4D, 4C, 00, FF, 83, 0D, 04, 4D, 4C, 00, FF, FF, 15, EC, 85, 43, 00, 8B, 0D, E0, 4C, 4C, 00, 89, 08, FF, 15, E8, 85, 43, 00, 8B, 0D, DC, 4C, 4C, 00, 89, 08, A1, E4, 85, 43, 00, 8B, 00, A3, FC, 4C, 4C, 00, E8, 1C, 01, 00, 00, 39, 1D, 58, 78, 44, 00, 75, 0C, 68, 14, 2C, 43, 00, FF, 15, E0, 85...
 
[+]

Entropy:
6.2884

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
220 KB (225,280 bytes)

The file kdz_fw_upd.exe has been seen being distributed by the following 16 URLs.

https://mega.nz/temporary/.../9goxELgC

http://download1573.mediafire.com/gj9fu7far7zg/.../KDZ_FW_UPD.exe

http://www37.zippyshare.com/d/59708642/.../KDZ_FW_UPD.exe

https://mega.nz/temporary/.../Fh5TBSCL

http://download1649.mediafire.com/lswwhcwj25wg/.../KDZ_FW_UPD.exe

https://mega.nz/temporary/.../z88WTRjT

http://qc2.androidfilehost.com/dl/KLetTtg9Vjlkx47OK4_puA/1472733683/.../KDZ_FW_UPD.exe

http://download1573.mediafire.com/w1827hkqihbg/.../KDZ_FW_UPD.exe

Scan kdz_fw_upd.exe - Powered by Reason Core Security