heh2xipi.exe

Business-in-a-Box

Biztree Inc.

This is installed with Business-in-a-Box 2016. The file has been seen being downloaded from telecharger.freedownloadmanager.org and multiple other hosts.
Publisher:
Biztree Inc.  (signed and verified)

Product:
Business-in-a-Box

Description:
Business-in-a-Box Installation Wizard

Version:
6.0.0

MD5:
b63b398d62e50dcaa2ee4f7d1890d2f4

SHA-1:
b3f2d07e70ac6f6446dd8abe43746273d69eb0d3

SHA-256:
3b6a1438676bd00b5561a545f03e499a5d8272c845c49b9a505b5093ec1d93d6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 9:55:53 PM UTC  (today)

File size:
483.9 KB (495,504 bytes)

Product version:
6.0.0

Copyright:
(c) 2001-2016, Biztree Inc. All rights reserved.

Original file name:
Business-in-a-Box_Setup.exe

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\heh2xipi.exe.part

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
9/12/2014 5:03:04 PM

Valid to:
5/9/2017 4:20:08 PM

Subject:
CN=Biztree Inc., O=Biztree Inc., L=Montreal, S=Quebec, C=CA

Issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
0492232BC8EFD4

File PE Metadata
Compilation timestamp:
6/8/2016 4:10:51 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:bW3iXGPTmPJGVQpeJ5lhZlO6J3Pjbqff16fmEMoSXixk:C3iWPTOKZh8ff3Xixk

Entry address:
0xFF0A0

Entry point:
60, BE, 00, D0, 48, 00, 8D, BE, 00, 40, F7, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, E0, D0, 0F, 00, 57, 83, C3, 04, 53, 68, 98, 20, 07, 00, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 00, 00, 90, 90, 90, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9, 49, 89, 4C, 24, 6C, 0F, B6, 4A...
 
[+]

Code size:
460 KB (471,040 bytes)

The file heh2xipi.exe has been discovered within the following programs.

Business-in-a-Box 2016  by Biztree Inc.
www.biztree.com
About 7% of users remove it
 
Powered by Should I Remove It?

The file heh2xipi.exe has been seen being distributed by the following 7 URLs.

http://telecharger.freedownloadmanager.org/Windows-PC/.../GRATUIT-6.0.0.html?ac57287

temp:business-in-a-box_setup.exe

http://www.biztree.com/C751F654-FE58-4CDF-8825-2795D92EDC60/FinalDownload/DownloadId-5A4A645A9954D1404DCAC767A98DEEF9/C751F654-FE58-4CDF-8825-2795D92EDC60/dist/.../Business-in-a-Box_Setup.exe

http://download.findmysoft.com/2016/09/.../Business-in-a-Box_7.1.3.exe

http://www.biztree.com/dist/.../Business-in-a-Box_Setup.exe

Scan heh2xipi.exe - Powered by Reason Core Security