copernicdesktopsearch.exe

Copernic Desktop Search

Copernic Inc.

This is a self-extracting archive and installer. The file has been seen being downloaded from download.copernic.com.
Publisher:
Copernic Inc.  (signed and verified)

Product:
Copernic Desktop Search

Description:
Copernic Desktop Search Installer

Version:
4.0.2.1042

MD5:
3b7e80e0b7e4596c32578fd4d97cfd8e

SHA-1:
e43b7550e2ac6d2fb8962f028097c2e65b24001b

SHA-256:
b618b4fd8ef1e7246b99a4f24019d1b3f1016a6c9b48662a0f9c6c3e67441f01

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 3:19:14 PM UTC  (today)

File size:
16.6 MB (17,438,784 bytes)

Product version:
4.0.2.1042

Copyright:
Copernic Inc. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\copernicdesktopsearch.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
9/24/2012 7:00:00 PM

Valid to:
7/26/2014 6:59:59 PM

Subject:
CN=Copernic Inc., O=Copernic Inc., L=Québec, S=Québec, C=CA

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
1F39C8BC3BECB38AC4FB2B9F39D15753

File PE Metadata
Compilation timestamp:
9/30/2013 10:04:25 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
393216:aFdKMUpgVdUhS/g9lPGTo3M8VcRjM5uAGr:aHKMwXSil+Toc2c9Vr

Entry address:
0x11BFD4

Entry point:
E8, 78, 70, 00, 00, E9, 7F, FE, FF, FF, 3B, 0D, 50, 69, 59, 00, 75, 02, F3, C3, E9, 73, 36, 00, 00, CC, CC, 56, 6A, 04, 6A, 20, E8, 4A, 75, 00, 00, 59, 59, 8B, F0, 56, FF, 15, 4C, 43, 54, 00, A3, C0, F5, 59, 00, A3, BC, F5, 59, 00, 85, F6, 75, 05, 6A, 18, 58, 5E, C3, 83, 26, 00, 33, C0, 5E, C3, 6A, 0C, 68, 68, DB, 58, 00, E8, 26, 15, 00, 00, E8, BE, 13, 00, 00, 83, 65, FC, 00, FF, 75, 08, E8, 23, 00, 00, 00, 59, 8B, F0, 89, 75, E4, C7, 45, FC, FE, FF, FF, FF, E8, 0B, 00, 00, 00, 8B, C6, E8, 41, 15, 00, 00...
 
[+]

Entropy:
7.7638  (probably packed)

Code size:
1.3 MB (1,321,984 bytes)

The file copernicdesktopsearch.exe has been seen being distributed by the following URL.

Scan copernicdesktopsearch.exe - Powered by Reason Core Security