Reactor.exe

Reactor Application

NHN USA Inc.

Publisher:
NHN Corporation  (signed by NHN USA Inc.)

Product:
Reactor Application

Version:
1, 0, 0, 49

MD5:
2443518652f98d9af664a52ff2fa3b46

SHA-1:
c805b180b736e37ed0e19147c877ec99ae561e20

SHA-256:
9afdf6578173c580ddd231ccacc0beeea4681a04f0b240b549304af122beb855

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/27/2024 8:56:32 AM UTC  (today)

Scan engine
Detection
Engine version

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.18.4

File size:
163.8 KB (167,696 bytes)

Product version:
1, 0, 0, 49

Copyright:
(c) NHN Corporation. All rights reserved.

Original file name:
Reactor.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\ijji\ijji reactor\reactor.exe

Digital Signature
Signed by:

Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
11/2/2009 4:00:00 PM

Valid to:
10/28/2011 4:59:59 PM

Subject:
CN=NHN USA Inc., O=NHN USA Inc., L=Irvine, S=California, C=US

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
2B5A383157EFC7CD2617EF32F0A7ACB9

File PE Metadata
Compilation timestamp:
11/19/2009 5:30:03 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
3072:2feFbiF0b72CFr+5oP/Q8StaewsrJDEFHIaOUqZ/emMbxHtg0u99fj:oexioFO4efr29wpemM00u

Entry address:
0xC9AA

Entry point:
E8, E0, 79, 00, 00, E9, 16, FE, FF, FF, 55, 8B, EC, 83, EC, 10, 8B, 4D, 08, 53, 8B, 5D, 0C, 56, 57, 33, FF, 39, 7D, 10, 89, 4D, F8, 89, 5D, FC, 74, 21, 39, 7D, 14, 74, 1C, 3B, CF, 75, 1F, E8, 9B, 1C, 00, 00, 57, 57, 57, 57, C7, 00, 16, 00, 00, 00, 57, E8, BB, EA, FF, FF, 83, C4, 14, 33, C0, 5F, 5E, 5B, C9, C3, 8B, 75, 18, 3B, F7, 74, 0D, 83, C8, FF, 33, D2, F7, 75, 10, 39, 45, 14, 76, 21, 83, FB, FF, 74, 0B, 53, 57, 51, E8, 17, 35, 00, 00, 83, C4, 0C, 3B, F7, 74, B9, 83, C8, FF, 33, D2, F7, 75, 10, 39, 45...
 
[+]

Entropy:
6.3688

Code size:
112 KB (114,688 bytes)

Windows Firewall Allowed Program
Name:
reactor application


Scan Reactor.exe - Powered by Reason Core Security