AntiBrowserSpyBrowserMaske.exe

AntiBrowserSpyBrowserMaske

Microsoft

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘BrowserMask’.
Scan AntiBrowserSpyBrowserMaske.exe - Powered by Reason Core Security
Publisher:
Microsoft

Product:
AntiBrowserSpyBrowserMaske

Version:
1.0.0.0

MD5:
02ecf207eee3c2bed878c9651fbe1c32

SHA-1:
d655e8fcce80ff266830d8ef0e5bcb99403f79fe

SHA-256:
c766fd6b8ab0c9c0af74f7907ba0085dbfb1a551215243f69635e8808057a7ab

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/7/2016 7:14:59 PM UTC  (today)

File size:
94.5 KB (96,768 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2010

Original file name:
AntiBrowserSpyBrowserMaske.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\Program Files\antibrowserspy\antibrowserspybrowsermaske.exe

File PE Metadata
Compilation timestamp:
9/23/2010 2:56:49 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:Q5f5G16FEs1R/QjtffjJn3iSQdieerc55G5fs/50:mf26FEs1R/QjtbQJerc55G5f2

Entry address:
0x2DDE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 78, 00, 00, 80, 10, 00, 00, 00, 90, 00, 00, 80, 18, 00, 00, 00, A8, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 07, 00, 02, 00, 00, 00, C0, 00, 00, 80, 03, 00, 00, 00, D8, 00, 00, 80, 04, 00, 00, 00, F0, 00, 00, 80, 05, 00, 00, 00, 08, 01...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
3.5 KB (3,584 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
BrowserMask

Command:
"C:\Program Files\antibrowserspy\antibrowserspybrowsermaske.exe" -delayed


Scan AntiBrowserSpyBrowserMaske.exe - Powered by Reason Core Security