rpdwtxlj.exe

ARCOM Download Manager

ARCOM

The file rpdwtxlj.exe by ARCOM has been detected as a potentially unwanted program by 5 anti-malware scanners.
Publisher:
ARCOM  (signed and verified)

Product:
ARCOM Download Manager

Version:
1.0.0

MD5:
cc4456a14202975d2ed3ea95ed623e7d

SHA-1:
b984b237002d6ed2a1d897418ad8bcb07fb01413

SHA-256:
137e77992821ff8efa1b715e18a0e74f08fc915fc4889dcb23b276175d360fb5

Scanner detections:
5 / 68

Status:
Potentially unwanted

Analysis date:
11/15/2024 8:58:54 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.FakeAV.C61058
3.8.2.16

G Data
Win32.Trojan.Agent.NQ88PA
17.1.25

Kaspersky
not-a-virus:Downloader.Win32.Trick
14.0.0.-1033

Panda Antivirus
Trj/CI.A
17.01.18.01

Rising Antivirus
Malware.Heuristic!ET#95% (rdm+)
23.00.65.17116

File size:
350.2 KB (358,624 bytes)

Product version:
1.0.0

Copyright:
© Arcom

Original file name:
MasterSpec_Update_4thQtr2016(WD).exe

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\rpdwtxlj.exe.part

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
4/18/2016 8:00:00 PM

Valid to:
4/19/2018 7:59:59 PM

Subject:
CN=ARCOM, O=ARCOM, STREET=465 South 400 East, STREET=Suite 200, L=Salt Lake City, S=UT, PostalCode=84111, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00C74F9D690E7F7F6357EC727DDAFE8B2F

File PE Metadata
Compilation timestamp:
5/6/2009 1:38:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

Entry address:
0x100030

Entry point:
60, BE, 00, 40, 4B, 00, 8D, BE, 00, D0, F4, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, 10, EC, 0F, 00, 57, 83, C3, 04, 53, 68, 2E, C0, 04, 00, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 02, 00, 90, 90, 90, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9, 49, 89, 4C, 24, 6C, 0F, B6, 4A...
 
[+]

Entropy:
7.8334  (probably packed)

Code size:
308 KB (315,392 bytes)

Remove rpdwtxlj.exe - Powered by Reason Core Security