qengine.exe

qengine.exe

Qustodio Technologies SL

It runs as a separate (within the context of its own process) windows Service named “qengine”. This file is installed with the program Qustodio.
Publisher:
Qustodio  (signed by Qustodio Technologies SL)

Product:
qengine.exe

Version:
2.2.4.5

MD5:
e1d28c5de80f5ad71cd850f5facf2bb4

SHA-1:
48787fded8b08f8ac973ba34c6f8140a89511be3

SHA-256:
1905aab064ae839fce92fdf8c6b0134818480436c0d3f75545d484f3d8a1f53e

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/27/2024 9:10:22 AM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
BACKDOOR.Trojan
9.0.1.0125

File size:
3.5 MB (3,710,288 bytes)

Product version:
2.2.4.5

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\qustodio\qproxy\qengine.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/24/2013 7:00:00 PM

Valid to:
1/25/2014 6:59:59 PM

Subject:
CN=Qustodio Technologies SL, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Qustodio Technologies SL, L=Barcelona, S=Catalonia, C=ES

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
523267366D937AAEA415B4C2730EF5A4

File PE Metadata
Compilation timestamp:
4/19/2013 9:52:59 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:kjyVI7FM0q3+cxF0FVAqOzhGftwzQKKMffa9K+cMYAwnxHT3bp/a+JlI:kWO7YKFftAQKvffas+8hy

Entry address:
0x14A837

Entry point:
E8, 8D, 0E, 01, 00, E9, 78, FE, FF, FF, 6A, 10, 68, 60, DB, 75, 00, E8, 5B, 12, 00, 00, 8B, 5D, 08, 85, DB, 75, 0E, FF, 75, 0C, E8, D2, CF, FF, FF, 59, E9, CC, 01, 00, 00, 8B, 75, 0C, 85, F6, 75, 0C, 53, E8, 89, D0, FF, FF, 59, E9, B7, 01, 00, 00, 83, 3D, A0, A7, 77, 00, 03, 0F, 85, 93, 01, 00, 00, 33, FF, 89, 7D, E4, 83, FE, E0, 0F, 87, 8A, 01, 00, 00, 6A, 04, E8, CD, 5E, 00, 00, 59, 89, 7D, FC, 53, E8, F1, 5F, 00, 00, 59, 89, 45, E0, 3B, C7, 0F, 84, 9E, 00, 00, 00, 3B, 35, C8, A7, 77, 00, 77, 49, 56, 53...
 
[+]

Code size:
2.8 MB (2,960,384 bytes)

Service
Display name:
qengine

Description:
qengine's Redirector service

Type:
Win32OwnProcess

Depends on:
RPCSS


The file qengine.exe has been discovered within the following program.

Qustodio  by Qustodio LLC
Publisher's description - “Qustodio helps you protect your kids online. See how they use the Internet, set healthy access limits, and protect against dangerous or inappropriate content, cyberbullying, and online predators. Qustodio is easy, superior and free.”
www.qustodio.com
3% remove it
 
Powered by Should I Remove It?

Scan qengine.exe - Powered by Reason Core Security