310.70-desktop-win8-win7-winvista-64bit-international.exe

NVIDIA Package Launcher

NVIDIA Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from de.download.nvidia.com and multiple other hosts.
Publisher:
NVIDIA Corporation  (signed and verified)

Product:
NVIDIA Package Launcher

Version:
1.0.1

MD5:
046663127088d49cd686d4de30c37e32

SHA-1:
0de400441216530b425ce36f1e70c0ab76dd82ea

SHA-256:
1552d20fad0aac33e3a9df44a5b3cd8e36db82b758e751e564d4cc6d971e8215

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 9:36:12 PM UTC  (today)

File size:
210 MB (220,195,272 bytes)

Product version:
1.0.1

Copyright:
Copyright © 2011 NVIDIA Corporation

Original file name:
PackageLauncher.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\310.70-desktop-win8-win7-winvista-64bit-international.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/2/2011 2:00:00 AM

Valid to:
9/2/2014 1:59:59 AM

Subject:
CN=NVIDIA Corporation, OU=Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=NVIDIA Corporation, L=Santa Clara, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
43BB437D609866286DD839E1D00309F5

File PE Metadata
Compilation timestamp:
9/7/2012 5:32:08 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6291456:fS5FqwTzEkqidls4j/0qE3kXBxifOkmiBot:kFqwnfls6/y3kQDBm

Entry address:
0x4FE01

Entry point:
E8, 10, B0, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 14, A1, 4C, F9, 48, 00, 33, C5, 89, 45, FC, 53, 56, 33, DB, 57, 8B, F1, 39, 1D, 78, 15, 49, 00, 75, 38, 53, 53, 33, FF, 47, 57, 68, A8, 44, 47, 00, 68, 00, 01, 00, 00, 53, FF, 15, 04, 12, 47, 00, 85, C0, 74, 08, 89, 3D, 78, 15, 49, 00, EB, 15, FF, 15, 48, 12, 47, 00, 83, F8, 78, 75, 0A, C7, 05, 78, 15, 49, 00, 02, 00, 00, 00, 39, 5D, 14, 7E, 22, 8B, 4D, 14, 8B, 45, 10, 49, 38, 18, 74, 08, 40, 3B, CB, 75, F6, 83, C9, FF, 8B, 45, 14, 2B, C1...
 
[+]

Code size:
446 KB (456,704 bytes)

The file 310.70-desktop-win8-win7-winvista-64bit-international.exe has been discovered within the following program.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
 
Powered by Should I Remove It?

The file 310.70-desktop-win8-win7-winvista-64bit-international.exe has been seen being distributed by the following 5 URLs.