asbhpp.exe

HomePageProtect

Amazing Software Products

The application asbhpp.exe by Amazing Software Products has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. It uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions.
Publisher:
Acesoft  (signed by Amazing Software Products)

Product:
HomePageProtect

Version:
1.00

MD5:
1343ddeedc27ba275f1a082a235526f9

SHA-1:
ba9379d6140097faf3ac8c41e1fc4736d9b1ffe8

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Analysis date:
4/23/2024 11:32:30 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.InstallCore.AmazingS (M)
16.7.4.1

File size:
157.2 KB (161,016 bytes)

Product version:
1.00

Original file name:
HomePageProtect.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\advanced searchbar\asbhpp.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
11/5/2004 8:00:00 AM

Valid to:
11/6/2005 7:59:59 AM

Subject:
CN=Amazing Software Products, OU=Amazing Software Products, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Amazing Software Products, L=Wilmington, S=Delaware, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
516687062D755A0A7A1294F79BE062DA

File PE Metadata
Compilation timestamp:
2/20/2004 4:16:18 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
4.20

CTPH (ssdeep):
3072:Rv7777777777777777177777777777777777777777777777UZkv777777777772:0ZjbN1y7pV7aR

Entry address:
0x1AE0

Entry point:
68, 28, 68, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, CC, B5, 4A, BD, 63, 92, C4, 4A, 8C, 60, C4, 75, 27, 70, 8E, 51, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 64, 65, 3D, 30, 0D, 0A, 48, 6F, 6D, 65, 50, 61, 67, 65, 50, 72, 6F, 74, 65, 63, 74, 00, 00, 00, 00, 00, FF, CC, 31, 00, 1A, DF, 85, B3, 0E, FB, 04, BA, 42, B6, 47, 00, EF, 45, B8, 91, 8E, 6B, B6, 1F, C0, 9A, BF, 7B, 41, 91, EC, 37, E2, 2D, 5C, 65, FF, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Entropy:
6.0344

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
137.5 KB (140,800 bytes)

Remove asbhpp.exe - Powered by Reason Core Security