start_drivergenius_portable_russian_(run_as_admin).exe

sign

The executable start_drivergenius_portable_russian_(run_as_admin).exe has been detected as malware by 6 anti-virus scanners.
Publisher:
sign  (signed and verified)

Version:
1. 0. 0. 0

MD5:
74961d4b83039a81770429666c46f393

SHA-1:
0b3b3711162769609a10e832a4ae046a0a955b92

SHA-256:
b1b5557cc72c9dd01aef3a7a15f50b9677274fb4be6f65004e77de1a09c1ab4c

Scanner detections:
6 / 68

Status:
Malware

Analysis date:
4/24/2025 5:04:08 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Malware-gen
141025-0

AVG
Trojan horse Generic33.AUJU
2014.0.4189

Dr.Web
Trojan.Proxy.24281
9.0.1.05190

IKARUS anti.virus
Virus.Win32.Heur
t3scan.1.8.3.0

NANO AntiVirus
Trojan.Win32.ATRAPS.brmzvy
0.28.6.62995

Vba32 AntiVirus
TrojanDownloader.VBS.Small
3.12.26.3

File size:
271.6 KB (278,104 bytes)

Product version:
1. 0. 0. 0

Copyright:
Hobo (hoboman50)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\drivergenius pro combi 2013new portable by hobo\drivergenius pro combi portable by hobo\start_drivergenius_portable_russian_(run_as_admin).exe

Digital Signature
Signed by:

Authority:
sign Certificate Authority

Valid from:
10/11/2014 3:31:53 PM

Valid to:
10/11/2044 3:31:53 PM

Subject:
CN=sign

Issuer:
CN=sign Certificate Authority

Serial number:
F6529FEA07D859AD309FC846EF24530C

File PE Metadata
Compilation timestamp:
3/30/2013 11:01:24 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:JLEijZJNiLzMaL9YH1+5+e9gzSzu6wWWN8uI779g:JLEijZJNiLzM4qHC926wWWPI7h

Entry address:
0x4D001

Entry point:
60, E8, 03, 00, 00, 00, E9, EB, 04, 5D, 45, 55, C3, E8, 01, 00, 00, 00, EB, 5D, BB, ED, FF, FF, FF, 03, DD, 81, EB, 00, D0, 04, 00, 83, BD, 88, 04, 00, 00, 00, 89, 9D, 88, 04, 00, 00, 0F, 85, CB, 03, 00, 00, 8D, 85, 94, 04, 00, 00, 50, FF, 95, A9, 0F, 00, 00, 89, 85, 8C, 04, 00, 00, 8B, F0, 8D, 7D, 51, 57, 56, FF, 95, A5, 0F, 00, 00, AB, B0, 00, AE, 75, FD, 38, 07, 75, EE, 8D, 45, 7A, FF, E0, 56, 69, 72, 74, 75, 61, 6C, 41, 6C, 6C, 6F, 63, 00, 56, 69, 72, 74, 75, 61, 6C, 46, 72, 65, 65, 00, 56, 69, 72, 74...
 
[+]

Packer / compiler:
ASPack v2.12

Code size:
16 KB (16,384 bytes)