memberutility.exe

Livejasmin Member Utility

Livejasmin.com

This is a setup program which is used to install the application. The file has been seen being downloaded from static.new.jasmincdn.com.
Publisher:
Livejasmin.com

Product:
Livejasmin Member Utility

Version:
2.5.1.0

MD5:
7f5b5b4e2f42cf6cfcaf824c6ee4279d

SHA-1:
165f99361dc08d169e06d85c4f4b20881487364f

SHA-256:
ce13347d86a2d2de7414cf8cf804862312505a9029ae2512e587cd0e6eb05d09

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
1/9/2025 8:45:05 PM UTC  (today)

Scan engine
Detection
Engine version

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

File size:
274.5 KB (281,088 bytes)

Product version:
2.5.1.0

Copyright:
Livejasmin.com

Original file name:
livejasminmember.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\memberutility.exe

File PE Metadata
Compilation timestamp:
4/15/2014 6:14:37 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:jbfPhzblDzvGJLvWGZ+4VD4DlWa/8Doc+ClFhZaWulg12Dn6oxjo:xblHGJLvWGZtCn6Io

Entry address:
0x362AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
209 KB (214,016 bytes)

The file memberutility.exe has been seen being distributed by the following URL.

Scan memberutility.exe - Powered by Reason Core Security