innoplus_onlineupdate.exe

innoplus Online Update

INNOVA-engineering GmbH

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘innoplus_update’.
Publisher:
INNOVA-engineering GmbH Dresden  (signed by INNOVA-engineering GmbH)

Product:
innoplus Online Update

Version:
14.0.0.320

MD5:
a1b6c9b116a72001bba49e16c6fcb607

SHA-1:
4075d219eaa29abc38be93c5ae710ee0369321ed

SHA-256:
ed89ff283202704ea1a29c0fc3a39964e5378bc3d993adb65f42fab22c37f3e0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 1:37:31 AM UTC  (today)

File size:
4.5 MB (4,769,600 bytes)

Product version:
14.0.0.320

Copyright:
© 1998-2012 INNOVA-engineering GmbH Dresden

Original file name:
DataUpdate.EXE

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\innoplus\innoplus bain\bin\innoplus_onlineupdate.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/10/2012 5:26:46 PM

Valid to:
4/11/2015 5:26:46 PM

Subject:
E=info@innoplus.de, CN=INNOVA-engineering GmbH, O=INNOVA-engineering GmbH, L=Dresden, S=Sachsen, C=DE

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121EE27139AE6C4E13A641DB0A14CFC8032

File PE Metadata
Compilation timestamp:
12/11/2014 10:46:48 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:w4QNUp4I/zIkaOxj3MuT22mMp414ubgpflQoaCBxwxUCN7xCEceSL7cF9yvCQVGG:w4QNUp4IbIkZxDMuTNu7jjxU2l2eU7cG

Entry address:
0x1D3DCC

Entry point:
E8, 70, 1C, 01, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 56, 8B, 75, 08, 85, F6, 78, 09, E8, F4, 1C, 01, 00, 3B, 30, 7C, 07, E8, EB, 1C, 01, 00, 8B, 30, E8, EA, 1C, 01, 00, 8B, 04, B0, 5E, 5D, C3, 8B, FF, 55, 8B, EC, 53, 56, E8, EA, A2, 00, 00, 8B, F0, 33, DB, 3B, F3, 75, 07, B8, F8, 1C, 6F, 00, EB, 22, 57, BF, 86, 00, 00, 00, 39, 5E, 24, 75, 1B, 6A, 01, 57, E8, C2, ED, 00, 00, 59, 59, 89, 46, 24, 3B, C3, 75, 0A, B8, F8, 1C, 6F, 00, 5F, 5E, 5B, 5D, C3, FF, 75, 08, 8B, 76, 24, E8, 8C, FF, FF, FF, 50, 57...
 
[+]

Code size:
2.7 MB (2,860,544 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
innoplus_update

Command:
"C:\Program Files\innoplus\innoplus bain\bin\innoplus_onlineupdate.exe" -b


Scan innoplus_onlineupdate.exe - Powered by Reason Core Security