netclean.exe

Cisco sytem network module

Nanjing Baishite Gardens Co., Ltd.

Publisher:
CiscoSystem  (signed by Nanjing Baishite Gardens Co., Ltd.)

Product:
Cisco sytem network module

Version:
3.9.2.5

MD5:
9419aadd517bc029f01e1718d6140c47

SHA-1:
76a37b5eb407f251a612c05c020f06ebfab67174

SHA-256:
6781eebf27df71fd634af2fe081d24b07a2654d5fc97a793092c94ffd72cba5a

Scanner detections:
7 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/16/2024 8:27:17 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Trojan.Heur.RQ1@raJf@9bi
585

Bitdefender
Gen:Trojan.Heur.RQ1@raJf@9bi
1.0.20.900

Emsisoft Anti-Malware
Gen:Trojan.Heur.RQ1@raJf@9bi
8.15.06.29.07

F-Secure
Gen:Trojan.Heur.RQ1@raJf@9bi
11.2015-29-06_2

G Data
Gen:Trojan.Heur.RQ1@raJf@9bi
15.6.25

MicroWorld eScan
Gen:Trojan.Heur.RQ1@raJf@9bi
16.0.0.540

Qihoo 360 Security
HEUR/QVM05.1.Malware.Gen
1.0.0.1015

File size:
2.8 MB (2,907,736 bytes)

Product version:
3.9.2.4

Copyright:
CosoSystem

Trademarks:
CiscoSystem

Original file name:
netclean

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\youtube download pool\g3\netclean.exe

Digital Signature
Authority:
WoSign CA Limited

Valid from:
3/2/2015 8:53:11 PM

Valid to:
3/2/2016 8:53:11 PM

Subject:
CN="Nanjing Baishite Gardens Co., Ltd.", O="Nanjing Baishite Gardens Co., Ltd.", L=Nanjing, S=Jiangsu, C=CN

Issuer:
CN=WoSign Class 3 Code Signing CA, O=WoSign CA Limited, C=CN

Serial number:
1B224EE507B4D09B57EB838796D6181C

File PE Metadata
Compilation timestamp:
3/25/2015 3:06:41 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:3KJpEzfacdCSSblo4IzEwjnoVzW8sqw/cC+oH+VoFXhpK+md6:3CizMo/5clQ+WC+/

Entry address:
0x2585DC

Entry point:
55, 8B, EC, 83, C4, F0, B8, 98, CA, 64, 00, E8, 14, 3C, DB, FF, 33, C0, 55, 68, 5B, 86, 65, 00, 64, FF, 30, 64, 89, 20, E8, D5, C6, DA, FF, 83, F8, 02, 7C, 49, A1, 7C, 1C, 66, 00, 8B, 00, E8, 40, 7B, EC, FF, A1, 7C, 1C, 66, 00, 8B, 00, C6, 40, 5F, 00, A1, 7C, 1C, 66, 00, 8B, 00, 33, D2, E8, 47, 98, EC, FF, 8B, 0D, 98, 19, 66, 00, A1, 7C, 1C, 66, 00, 8B, 00, 8B, 15, 10, BD, 64, 00, E8, 27, 7B, EC, FF, A1, 7C, 1C, 66, 00, 8B, 00, E8, 7F, 7C, EC, FF, 33, C0, 5A, 59, 59, 64, 89, 10, 68, 62, 86, 65, 00, C3, E9...
 
[+]

Entropy:
6.5855

Developed / compiled with:
Microsoft Visual C++

Code size:
2.3 MB (2,455,040 bytes)

Scan netclean.exe - Powered by Reason Core Security