× ¡Las cookies están desactivadas! Esta página requiere que las cookies estén activadas para funcionar correctamente
SHA256: ff80471eff798fa7f7b7258a9d13c1da98ce357a00c61415652bf067c8d27dff
Nombre: nvvswc.gxe
Detecciones: 45 / 68
Fecha de análisis: 2019-03-21 16:31:53 UTC ( hace 1 mes )
Antivirus Resultado Actualización
Ad-Aware Gen:Variant.Razy.35624 20190321
AegisLab Trojan.MSIL.Smalo.4!c 20190321
AhnLab-V3 Trojan/Win32.Agent.C1366242 20190321
ALYac Gen:Variant.Razy.35624 20190321
Antiy-AVL Trojan/MSIL.Smalo 20190321
Arcabit Trojan.Razy.D8B28 20190321
Avast Win32:Evo-gen [Susp] 20190321
AVG FileRepMetagen [Malware] 20190321
Avira (no cloud) HEUR/AGEN.1000970 20190321
BitDefender Gen:Variant.Razy.35624 20190321
CAT-QuickHeal Trojan.Skeeyah 20190320
Comodo Malware@#33r8eaonfdkfc 20190321
Cybereason malicious.14c5f7 20190109
Cylance Unsafe 20190321
Cyren W32/Trojan.VERS-4972 20190321
DrWeb Trojan.Siggen6.57991 20190321
Emsisoft Gen:Variant.Razy.35624 (B) 20190321
ESET-NOD32 MSIL/Agent.RCE 20190321
F-Secure Heuristic.HEUR/AGEN.1000970 20190321
Fortinet W32/Smalo.HR!tr 20190321
GData MSIL.Trojan-Dropper.Smalo.B 20190321
Sophos ML heuristic 20190313
Jiangmin Trojan.MSIL.byuz 20190321
K7AntiVirus Trojan ( 004e24d91 ) 20190321
K7GW Trojan ( 004e24d91 ) 20190321
Kaspersky Trojan.MSIL.Smalo.hr 20190321
Malwarebytes Backdoor.Agent.BDB 20190321
MAX malware (ai score=87) 20190321
McAfee RDN/Generic.dx 20190321
McAfee-GW-Edition RDN/Generic.dx 20190321
Microsoft Trojan:MSIL/Daol.A 20190321
eScan Gen:Variant.Razy.35624 20190321
NANO-Antivirus Trojan.Win32.TrjGen.ebldcl 20190321
Palo Alto Networks (Known Signatures) generic.ml 20190321
Panda Trj/GdSda.A 20190321
Qihoo-360 Win32/Trojan.c03 20190321
Rising Trojan.Smalo!8.2F08 (CLOUD) 20190321
Sophos AV Troj/MSIL-GJV 20190321
Tencent Msil.Trojan.Smalo.Lkod 20190321
Trapmine malicious.moderate.ml.score 20190301
TrendMicro-HouseCall TROJ_FRS.0NA003D716 20190321
VBA32 Trojan.MSIL.Smalo 20190321
VIPRE Trojan.Win32.Generic!BT None
Zillya Trojan.Smalo.Win32.44 20190321
ZoneAlarm by Check Point Trojan.MSIL.Smalo.hr 20190321
Acronis 20190321
Alibaba 20190306
Avast-Mobile 20190320
Babable 20180918
Baidu 20190318
Bkav 20190320
ClamAV 20190321
CMC 20190321
CrowdStrike Falcon (ML) 20190212
eGambit 20190321
Endgame 20190321
F-Prot 20190321
Kingsoft 20190321
SentinelOne (Static ML) 20190317
SUPERAntiSpyware 20190321
Symantec Mobile Insight 20190220
TACHYON 20190321
TheHacker 20190320
TotalDefense 20190318
TrendMicro 20190322
Trustlook 20190321
ViRobot 20190321
Yandex 20190321
Zoner 20190321
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright © 2016

Product biemgldj.Properties
Original name biemgldj.exe
Internal name biemgldj.exe
File version 8.17.13.5891
Description NVIDIA Driver Helper Service, Version 358.91
Comments Display driver
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2016-04-01 16:46:25
Entry Point 0x00003DDE
Number of sections 4
.NET details
Module Version ID 0cce6768-5765-46fc-82cb-8eadf26a3ca3
TypeLib ID 7929336f-ac34-4543-a184-1a5855e9ed2d
PE sections
PE imports
_CorExeMain
Number of PE resources by type
RT_MANIFEST 1
RT_VERSION 1
Number of PE resources by language
NEUTRAL 2
PE resources
ExifTool file metadata
SubsystemVersion
4.0

Comments
Display driver

LinkerVersion
6.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
8.17.13.5891

LanguageCode
Neutral

FileFlagsMask
0x003f

FileDescription
NVIDIA Driver Helper Service, Version 358.91

ImageFileCharacteristics
Executable, No line numbers, No symbols, 32-bit

CharacterSet
Unicode

InitializedDataSize
3072

EntryPoint
0x3dde

OriginalFileName
biemgldj.exe

MIMEType
application/octet-stream

LegalCopyright
Copyright 2016

FileVersion
8.17.13.5891

TimeStamp
2016:04:01 18:46:25+02:00

FileType
Win32 EXE

PEType
PE32

InternalName
biemgldj.exe

ProductVersion
8.17.13.5891

UninitializedDataSize
0

OSVersion
4.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
NVIDIA Corporation

CodeSize
7680

ProductName
biemgldj.Properties

ProductVersionNumber
8.17.13.5891

FileTypeExtension
exe

ObjectFileType
Executable application

AssemblyVersion
8.17.13.5891

File identification
MD5 369f7bd14c5f70f0680bfb1ed9f0e9d8
SHA1 8aa63e555f5af257c54d1207ae7f5cb30a2e51d8
SHA256 ff80471eff798fa7f7b7258a9d13c1da98ce357a00c61415652bf067c8d27dff
ssdeep
96:wlyUoyNtgOfO31KAgyq0LZ/SFH8cShuOMYtxEmWMO79cDehjcze4K7EK75zNt:wlXtgOG3UAgYN/SFCuLYXdk9wbe4jE7

authentihash 47f6b66bc50c5db89ce34cbffcb0854b37915453802a816dcfeb918985d73736
imphash f34d5f2d4577ed6d9ceec516c1f5a744
Tamaño del fichero 11.5 KB ( 11776 bytes )
Tipo Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (61.0%)
Win64 Executable (generic) (22.9%)
Win32 Dynamic Link Library (generic) (5.4%)
Win32 Executable (generic) (3.7%)
Win16/32 Executable Delphi generic (1.7%)
Tags
peexe assembly

VirusTotal metadata
First submission 2016-04-05 08:11:25 UTC ( hace 3 años )
Last submission 2019-03-21 16:31:53 UTC ( hace 1 mes )
Nombres biemgldj.exe
nvvswc.exe
nvvswc.exe
nvvswc.exe
nvvswc.gxe
nvvswc.exe
No hay comentarios. Ningún usuario ha comentado aún. ¡Sea el primero en hacerlo!

Deje su comentario...

?
Enviar comentario

No ha iniciado sesión. Solo los usuarios registrados pueden escribir comentarios.

No hay votos. Nadie ha votado aún. ¡Sea el primero!