avira_en_av_5552464b2b063__ws.exe

Avira

Avira Operations GmbH & Co. KG

This is a setup program which is used to install the application. This is installed with Avira Antivirus. The file has been seen being downloaded from package.avira.com and multiple other hosts.
Publisher:
Avira Operations GmbH & Co. KG  (signed and verified)

Product:
Avira

Version:
1.1.37.30000

MD5:
6c92f98b6b3232838a695d22ee28d9a3

SHA-1:
8e412215ad7a48635df3d7a7fa717cdacd308a08

SHA-256:
ac5483564d6abfd34af5549fef7aff970adf1b61211f889dbd9efad7a84e63b9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:12:14 AM UTC  (today)

File size:
4.5 MB (4,737,144 bytes)

Product version:
1.1.37.30000

Copyright:
Copyright © 2015 Avira Operations GmbH & Co. KG and its Licensors

Original file name:
Avira.OE.Setup.Bundle.exe

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/17/2014 2:00:00 AM

Valid to:
1/17/2017 1:59:59 AM

Subject:
CN=Avira Operations GmbH & Co. KG, OU=Global Assembly, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Avira Operations GmbH & Co. KG, L=Tettnang, S=Baden-Württemberg, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3AEA7D79BC1D84D2E1AB0FFC8BC35658

File PE Metadata
Compilation timestamp:
11/28/2013 4:14:28 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
98304:+qO2b2vOvjN5UUPLAj9NOFtJ4k8MVB+9mZJ9N8Sy:+DckOHZPLAjLO5VBpZrNO

Entry address:
0x267A5

Entry point:
E8, C9, 39, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, D0, 60, 45, 00, 75, 02, F3, C3, E9, C4, 40, 00, 00, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 7F, 0F, B6, 44, 24, 08, 0F, BA, 25, 44, 7C, 45, 00, 01, 73, 0D, 8B, 4C, 24, 0C, 57, 8B, 7C, 24, 08, F3, AA, EB, 5D, 8B, 54, 24, 0C, 81, FA, 80, 00, 00, 00, 7C, 0E, 0F, BA, 25, 80, 61, 45, 00, 01, 0F, 82, 79, 41, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B...
 
[+]

Entropy:
7.9749  (probably packed)

Code size:
229.5 KB (235,008 bytes)

The file avira_en_av_5552464b2b063__ws.exe has been discovered within the following programs.

Antivirus Pro  by Avira GmbH
www.avira.com
About 4% of users remove it
Avira Antivirus  by Avira Operations GmbH & Co. KG
11% remove it
 
Powered by Should I Remove It?

The file avira_en_av_5552464b2b063__ws.exe has been seen being distributed by the following 50 URLs.

https://package.avira.com/package/oeavira/win/.../avira_en_av_555b2f344553c__ws1.exe

https://package.avira.com/package/oeavira/win/.../avira_en_av_4405779177__ws1.exe

https://package.avira.com/package/oeavira/win/.../avira_en_av_555b51e6a8cb6__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_en_av_555f3b84eb52d__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_es_av_555bad497a55b__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_en_av_4464128935__ws1.exe

http://www.avira.com/downloads/.../defaultDownload?product=avira-antivirus-pro&os=

https://package.avira.com/package/oeavira/win/.../avira_it_av_555b3fa38f265__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_en_av_555667a7291b7__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_it_av_5561fa4dd7867__ws1.exe

https://package.avira.com/package/oeavira/win/.../avira_en_av_5558bebf709ed__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_en_upprodl_3007564323_n22ae38e4ojxjk4g7i2t_wd.exe

https://package.avira.com/package/oeavira/win/.../avira_fr_av_555ba4f85cdc0__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_en_av_556334ecc32a4__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_it_av_5555af012774d__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_en_av_53ebb11ae4319__ws1.exe

https://package.avira.com/package/oeavira/win/.../avira_en_av_5554c92086db6__ws.exe

https://package.avira.com/package/oeavira/win/.../avira_ptbr_av_55635810db833__ws1.exe

Latest 30 of 72 download URLs

Scan avira_en_av_5552464b2b063__ws.exe - Powered by Reason Core Security