housecalllauncher64.exe

Trend Micro iRobot

Trend Micro, Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from reservoir.marketstudio.net and multiple other hosts.
Publisher:
Trend Micro Inc.  (signed by Trend Micro, Inc.)

Product:
Trend Micro iRobot

Description:
Trend Micro Application Launcher

Version:
1.50.0.1162

MD5:
1fbb338fd54a8e1697488658705bae05

SHA-1:
4fa426edf11e8c127827dec4a728ee5fbc59d9e2

SHA-256:
fb6a5e6c66e7984a660fdbdb81125eead3c9e4048e8f9fa28b21fa463fbac53b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 7:37:43 AM UTC  (today)

File size:
2.3 MB (2,406,064 bytes)

Product version:
1.50

Copyright:
Copyright (C) 2008 - 2012 Trend Micro Incorporated. All rights reserved.

Trademarks:
Copyright (C) Trend Micro Inc.

Original file name:
AppLauncher.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/27/2011 11:00:00 AM

Valid to:
2/16/2013 10:59:59 AM

Subject:
CN="Trend Micro, Inc.", OU=RD, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Trend Micro, Inc.", L=Taipei, S=Taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6326C00EAD256B6837EEB29B5EE84720

File PE Metadata
Compilation timestamp:
6/27/2012 1:37:51 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:sgRwnqH4D0HWILGRU03ya8u5AsF7ZbbPE11qnP6NT3Gt0:NVbHWCa8u5V3DsEn8Tb

Entry address:
0x19754

Entry point:
48, 83, EC, 28, E8, DB, 34, 00, 00, 48, 83, C4, 28, E9, 1A, FE, FF, FF, CC, CC, 40, 53, 48, 83, EC, 30, 48, 8B, D9, B9, 0E, 00, 00, 00, E8, 81, 37, 00, 00, 90, 48, 8B, 43, 08, 48, 85, C0, 74, 44, 48, 8B, 0D, 8C, AF, 01, 00, 48, 89, 4C, 24, 20, 48, 8D, 15, 78, AF, 01, 00, 48, 85, C9, 74, 1E, 48, 39, 01, 75, 0F, 48, 8B, 41, 08, 48, 89, 42, 08, E8, 69, F8, FF, FF, EB, 0A, 48, 8B, D1, 48, 89, 4C, 24, 20, EB, DD, 48, 8B, 4B, 08, E8, 54, F8, FF, FF, 48, 83, 63, 08, 00, B9, 0E, 00, 00, 00, E8, 29, 36, 00, 00, 48...
 
[+]

Entropy:
7.8722  (probably packed)

Code size:
137.5 KB (140,800 bytes)

The file housecalllauncher64.exe has been discovered within the following programs.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
BitTorrent  by BitTorrent Inc.
BitTorrent is a desktop application that allows you to work with torrent files.BitTorrent allows you to download files available as torrents, search torrent sites for music, videos, books, software and other free or public domain material.
www.bittorrent.com
7% remove it
 
Powered by Should I Remove It?

The file housecalllauncher64.exe has been seen being distributed by the following 8 URLs.

&onid=8022&oid=3001-8022_4-75312657&rsid=cbsidownloadcomsite&sl=en&sc=us&topicguid=security/antispyware&topicbrcrm=&pid=13185178&mfgid=6283336&merid=6283336&ctype=dm&cval=NONE&devicetype=desktop&pguid=fed3c82fb62dc00a15f44a6b&viewguid=UW27gwceVOiHPZf3UNi8K1LOYI3-h98z7-9y&destUrl=http://software-files-a.cnet.com/s/software/13/18/51/.../HousecallLauncher64.exe

Scan housecalllauncher64.exe - Powered by Reason Core Security