rsscontrolz0.exe

SecureLink, Inc.

Publisher:
SecureLink, Inc.  (signed and verified)

MD5:
6a719987d9b41ff52f2b15e725aec8eb

SHA-1:
139a4db6a4b95422440e4177675369131dbeb53e

SHA-256:
9fc6da82f7ed0f7df52302acce7020f48400ec1bd64c7267dba056c55755cf0c

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/12/2024 6:59:33 PM UTC  (today)

Scan engine
Detection
Engine version

Baidu Antivirus
Worm.Win32.Generic
4.0.3.1739

Kaspersky
HEUR:Worm.Win32.Generic
14.0.0.-1284

File size:
222.1 KB (227,424 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\rsscontrolz0.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/28/2014 6:00:00 PM

Valid to:
1/27/2017 5:59:59 PM

Subject:
CN="SecureLink, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="SecureLink, Inc.", L=Bee Cave, S=Texas, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
103164E5C849418DD083CC873DD99E52

File PE Metadata
Compilation timestamp:
4/8/2015 2:07:05 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0xE6CE

Entry point:
E8, 76, 88, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 53, 33, DB, 39, 5D, 14, 75, 20, E8, 2B, 1D, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, AB, FB, FF, FF, 83, C4, 14, 83, C8, FF, E9, 99, 00, 00, 00, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 3B, FB, 74, 21, 3B, F3, 75, 1D, E8, FB, 1C, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 7B, FB, FF, FF, 83, C4, 14, 83, C8, FF, EB, 6A, B8, FF, FF, FF, 7F, 89, 45, E4, 3B, F8, 77, 03, 89, 7D, E4, FF, 75, 1C, 8D, 45, E0, FF, 75, 18, C7...
 
[+]

Entropy:
6.4473

Code size:
146.5 KB (150,016 bytes)

Scan rsscontrolz0.exe - Powered by Reason Core Security