videoconverter.exe

Rich Video Converter

Radiocom CJSC

The application videoconverter.exe by Radiocom CJSC has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Radiocom  (signed by Radiocom CJSC)

Product:
Rich Video Converter

Version:
2.4.2.1297

MD5:
779a98b83875dab32011582a9a09c175

SHA-1:
1d3129cd545ef943d89d4574bd642bf92be48266

SHA-256:
37205d4870290f6859f498c2f46a785abaef9f6323f307b317341dced9a219af

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
11/25/2024 11:20:05 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
16.8.11.20

File size:
1.6 MB (1,674,520 bytes)

Product version:
2.4.2.0

Copyright:
Copyright (C) Radiocom

Original file name:
videoconverter.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\rich media player\data\videoconverter.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/17/2014 7:00:00 AM

Valid to:
2/17/2015 6:59:59 AM

Subject:
CN=Radiocom CJSC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Radiocom CJSC, L=Kiev, S=Kiev, C=UA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
531E40729E737E46C1F9519C589E8681

File PE Metadata
Compilation timestamp:
7/30/2014 4:15:31 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:sZesMuqNFaCjfmHp2MUL3IWJsg+maJ0nDEzDXPS4Wae4fpm1NfOUxaRM0J:sZesM7aCLmHgBDILgvdsu4WaHI1NG/l

Entry address:
0x7C33F

Entry point:
B8, D8, 49, 8E, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 3F, E8, 92, 80, A0, 03, C3, D0, 02, DB, 09, 82, 0A, FC, 9B, 46, 9C, BF, 4D, 09, 97, 4A, 0D, 67, 22, 41, ED, 9D, DD, 66, 6A, 50, 82, 45, A4, 93, 99, C7, 60, 1A, 24, 1C, 98, DC, 5B, 37, 56, 46, 14, B7, 75, 7C, 34, 68, EE, FF, 3A, 9C, AF, 3A, D2, E4, F2, B4, B7, 0B, C5, 87, F9, 64, BC, 42, 28, A1, 0B, 25, B7, ED, 82, 69, 6A, 6E, 7D, 25, 9E, 57, A7, 4F, DB, CA, 45, 1D, 56...
 
[+]

Entropy:
7.8562

Packer / compiler:
PECompact v2

Code size:
573.5 KB (587,264 bytes)

Remove videoconverter.exe - Powered by Reason Core Security