freeofficewindows.exe

SoftMaker FreeOffice

SoftMaker Software GmbH

This is a setup and installation application. The file has been seen being downloaded from www.softmaker.net and multiple other hosts.
Publisher:
SoftMaker Software GmbH  (signed and verified)

Product:
SoftMaker FreeOffice

Description:
SoftMaker FreeOffice Setup

Version:
1.0.0.3420

MD5:
d16d3794dc873a318c4a5076fc734aec

SHA-1:
261178906f0e31401d8250c7c2e755ec251a73e3

SHA-256:
8c2e19eb348c9f77deeb1e9a8ea54978916309f65348c4b0062423a92b281a11

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 8:20:41 AM UTC  (today)

File size:
58.6 MB (61,478,408 bytes)

Product version:
1.0.0.3420

Trademarks:
All Rights Reserved

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\freeofficewindows.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
9/2/2013 8:00:00 PM

Valid to:
9/21/2015 7:59:59 PM

Subject:
CN=SoftMaker Software GmbH, O=SoftMaker Software GmbH, L=Nuernberg, S=Bayern, C=DE

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
6543EF0852B3AD0A920CAAD0B0069788

File PE Metadata
Compilation timestamp:
1/10/2013 5:24:04 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
1572864:Nt1wd3ZPTxk8/dBOT4WKtvzJLdVs5z5w2Qn:NwJC8HJWcJPC6zn

Entry address:
0x77A30

Entry point:
E8, 9C, C8, 00, 00, E9, 17, FE, FF, FF, 55, 8B, EC, 83, EC, 20, 53, 33, DB, 39, 5D, 14, 75, 20, E8, 22, 54, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 97, 07, 00, 00, 83, C4, 14, 83, C8, FF, E9, C5, 00, 00, 00, 56, 8B, 75, 0C, 57, 8B, 7D, 10, 3B, FB, 74, 24, 3B, F3, 75, 20, E8, F2, 53, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 67, 07, 00, 00, 83, C4, 14, 83, C8, FF, E9, 93, 00, 00, 00, 81, FF, FF, FF, FF, 3F, C7, 45, EC, 42, 00, 00, 00, 89, 75, E8, 89, 75, E0, 76, 09, C7, 45, E4...
 
[+]

Entropy:
7.9968  (probably packed)

Code size:
732 KB (749,568 bytes)

The file freeofficewindows.exe has been discovered within the following program.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
 
Powered by Should I Remove It?

The file freeofficewindows.exe has been seen being distributed by the following 2 URLs.

Scan freeofficewindows.exe - Powered by Reason Core Security