km플레이어+다운로드.exe

씨큐미디어

The application km플레이어+다운로드.exe by 씨큐미디어 has been detected as a potentially unwanted program by 21 anti-malware scanners.
Publisher:
FreePDS  (signed by 씨큐미디어)

Product:
FreePDS

Version:
1, 0, 0, 4

MD5:
3ae337fcd9734851ae837b542379f18b

SHA-1:
3e72805b2719b8d819338cef5dbd1de93bc71c8f

SHA-256:
961a6aa8be26e28b57cc738be2e497c5dfcb72f045c1790ec7b99b26b5c46a9e

Scanner detections:
21 / 68

Status:
Potentially unwanted

Analysis date:
11/27/2024 6:33:07 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Strictor.43425
40

AhnLab V3 Security
PUP/Win32.MulDown
16.12.25

Avira AntiVirus
TR/Strictor.qoiwnea
7.11.138.16

avast!
Win32:Downloader-TRL [Adw]
2014.9-161225

AVG
Generic5
2017.0.2518

Bitdefender
Gen:Variant.Strictor.43425
1.0.20.1800

Clam AntiVirus
Win.Adware.FreePDS-2
0.98/18355

Comodo Security
Application.Win32.Hotclip.A
17961

Emsisoft Anti-Malware
Gen:Variant.Strictor.43425
8.16.12.25.02

ESET NOD32
Win32/Adware.Hotclip (variant)
10.9566

F-Secure
Gen:Variant.Strictor.43425
11.2016-25-12_1

G Data
Gen:Variant.Strictor.43425
16.12.24

IKARUS anti.virus
not-a-virus:Downloader.Win32.Freepds
t3scan.2.2.29

Kaspersky
not-a-virus:Downloader.Win32.Freepds
14.0.0.-913

Malwarebytes
PUP.Optional.FreePDS.A
v2016.12.25.02

MicroWorld eScan
Gen:Variant.Strictor.43425
17.0.0.1080

nProtect
Adware/W32.Agent.334320
14.03.20.02

Panda Antivirus
Trj/Genetic.gen
16.12.25.02

Rising Antivirus
PE:Adware.Agent!1.6979
23.00.65.161223

Vba32 AntiVirus
Downloader.Freepds
3.12.24.3

VIPRE Antivirus
Adware.Freepds
27570

File size:
326.5 KB (334,320 bytes)

Product version:
1, 0, 0, 4

Copyright:
Copyright ⓒ 2013

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\km플레이어+다운로드.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
10/14/2012 9:00:00 AM

Valid to:
11/14/2013 8:59:59 AM

Subject:
CN=씨큐미디어, OU=IT Team, O=씨큐미디어, L=Gangnam-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6FCF7E45FEB4582CE934D5E0DDF3BFF0

File PE Metadata
Compilation timestamp:
10/1/2013 1:20:18 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x22C91

Entry point:
E8, 43, 63, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, 88, DF, 43, 00, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, 8C, DF, 43, 00, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, C9, 19, 00, 00, 85, C0, 75, 06, B8, F0, E0, 43, 00, C3, 83, C0, 08, C3, E8, B6, 19, 00, 00, 85, C0, 75, 06, B8, F4, E0, 43, 00, C3, 83, C0, 0C, C3, 8B, FF, 55, 8B, EC, 56, E8, E2, FF, FF, FF, 8B, 4D, 08...
 
[+]

Entropy:
6.6023

Code size:
198 KB (202,752 bytes)

Remove km플레이어+다운로드.exe - Powered by Reason Core Security