nmhclient.exe

Wajamu

The file is part of Wajam, a web browser extension that injects social search integration into various search portals such as Google. The executable nmhclient.exe by Wajamu has been known to be a potentially unwanted program that has been detected by 2 anti-malware scanners.
Publisher:
Wajamu  (signed and verified)

MD5:
33a068860a6ac07ba534e838cf838729

SHA-1:
cb270de0f00a9ad5fe158dcc42ff011a1c61d8c2

SHA-256:
4a62edbc10d017e5b3159f2c6fbb77e42ee0a84266b903cd56f3a31c43f058a6

Scanner detections:
2 / 68

Status:
Inconclusive but possibly unwanted  (There is not enough data for a 100% detection)

Analysis date:
11/23/2024 10:56:36 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Wajamu
2015.0.3407

VIPRE Antivirus
Threat.4895337
31208

File size:
373.3 KB (382,240 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Program Files\v-bates\nmhclient.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
8/25/2013 8:00:00 PM

Valid to:
8/26/2014 7:59:59 PM

Subject:
CN=Wajamu, O=Wajamu, L=Herzlia, S=Israel, C=IL

Serial number:
254859747F512412BB92CB81D0C020A7

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
6144:bdhxDoH1DSE8LWQOw6v1GhXuZ+bPeEgRKMVGR+JEWfm6rNqdTh1XkGGCR1Dv:bdhxDSFmI1GxuYEG+JHmKN0z0GBRZ

Entry point:
E8, 87, C8, 00, 00, E9, 7B, FE, FF, FF, 55, 8B, EC, 8D, 45, 14, 50, 6A, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 4B, CD, 00, 00, 83, C4, 14, 5D, C3, E8, 7E, C0, 00, 00, 8B, 48, 6C, 3B, 0D, 3C, D3, 44, 00, 74, 10, 8B, 0D, FC, D3, 44, 00, 85, 48, 70, 75, 05, E8, 20, D0, 00, 00, A1, F8, C3, 44, 00, C3, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 55, 8B, EC, 56, 33, C0, 50, 50, 50, 50, 50, 50, 50, 50, 8B, 55, 0C, 8D, 49, 00, 8A, 02, 0A, C0, 74, 09, 83, C2, 01, 0F, AB, 04, 24, EB, F1, 8B, 75, 08, 83, C9, FF...
 
[+]

Scan nmhclient.exe - Powered by Reason Core Security