esignal_12.2.3853_x64.exe

Interactive Data Corporation

This is a self-extracting archive and installer. The file has been seen being downloaded from download.esignal.com.
Publisher:
Interactive Data Corporation  (signed and verified)

Description:
Windows® Installer Bootstrapper

Version:
1.3.2145.1060

MD5:
b2813c4c415fdb2d13bd43f14726cb74

SHA-1:
6c25cf173ad0abb36097c341b3ef8f4d0f9479fc

SHA-256:
87d8584127859e3024a93d9a7d2e6d91ac3f5ffc6d4fcd7ef671eec98f89c378

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 6:51:29 PM UTC  (today)

File size:
160.6 MB (168,396,440 bytes)

Product version:
1.3.2145.1060

Copyright:
Copyright (c) 2010 eSignal, a division of Interactive Data Corporation. All rights reserved.

Original file name:
setup.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\esignal_12.2.3853_x64.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/3/2014 7:00:00 PM

Valid to:
4/4/2016 7:59:59 PM

Subject:
CN=Interactive Data Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Interactive Data Corporation, L=Bedford, S=Maryland, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1849378326072D071B90159BCBCD0B40

File PE Metadata
Compilation timestamp:
3/17/2015 11:47:12 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3145728:n6s5wDelk5ZJEUCpDiqAMc0fRYgmgWM6HqU/KPZJm3xZY+:n6sODeCZJEpWq80mlgpGsqzY+

Entry address:
0x11368

Entry point:
48, 83, EC, 28, E8, DB, 57, 00, 00, 48, 83, C4, 28, E9, 1A, FE, FF, FF, CC, CC, 40, 53, 48, 83, EC, 20, BA, 08, 00, 00, 00, 8D, 4A, 18, E8, DD, 58, 00, 00, 48, 8B, C8, 48, 8B, D8, E8, 1E, 05, 00, 00, 48, 89, 05, 8F, A4, 01, 00, 48, 89, 05, 80, A4, 01, 00, 48, 85, DB, 75, 05, 8D, 43, 18, EB, 06, 48, 83, 23, 00, 33, C0, 48, 83, C4, 20, 5B, C3, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 48, 89, 7C, 24, 18, 41, 54, 41, 55, 41, 56, 48, 83, EC, 20, 4C, 8B, F1, E8, F3, 45, 00, 00, 90, 48, 8B, 0D, 47, A4, 01...
 
[+]

Entropy:
7.9909  (probably packed)

Code size:
114 KB (116,736 bytes)

The file esignal_12.2.3853_x64.exe has been seen being distributed by the following URL.

Scan esignal_12.2.3853_x64.exe - Powered by Reason Core Security