iobit-unlocker_1-1-32-64-bits_fr_379144.exe

IObit Unlocker

IObit Information Technology

This is a setup program which is used to install the application. This file is installed with the program IObit Unlocker. The file has been seen being downloaded from lb.cdn.m6web.fr and multiple other hosts.
Publisher:
IObit   (signed by IObit Information Technology)

Product:
IObit Unlocker

Version:
1.0

MD5:
c9a8d409131f72822181f2ae876fffeb

SHA-1:
8181ee9366e89541dcf88873ce4eff12823c4c2e

SHA-256:
e5921f1239a2b70d6e9eabefb944843eea4e741770cb2176512d57fc902ba134

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/26/2024 8:18:17 PM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Win32/Toolbar.Widgi (variant)
7.9307

MicroWorld eScan
Win32/Toolbar.Widgi
14.0.0.1080

File size:
2.9 MB (3,012,984 bytes)

Product version:
1.0

Copyright:
Copyright © 2005-2011

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\iobit-unlocker_1-1-32-64-bits_fr_379144.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/8/2009 1:00:00 AM

Valid to:
1/5/2013 12:59:59 AM

Subject:
CN=IObit Information Technology, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=IObit Information Technology, L=ChengDu, S=SiChuan, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2B8F44226C2D9E0EDF5765B0D7A21B51

File PE Metadata
Compilation timestamp:
3/17/2011 11:22:54 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:OhVaOfI1lHgpbhb7Y49r/YI2PvmWuCWvXJmg72Ybq9ZPTt7EA3ZHDb6PtNtrKsCv:xmI1libhb7Y4x2PvmWubUg7at7E2qPjU

Entry address:
0x16478

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, B0, 52, 41, 00, E8, AC, 03, FF, FF, 33, C0, 55, 68, 45, 6B, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 01, 6B, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, AB, 41, 00, E8, 4E, EC, FF, FF, E8, F5, E7, FF, FF, 8D, 55, EC, 33, C0, E8, 7F, 84, FF, FF, 8B, 55, EC, B8, AC, D6, 41, 00, E8, E2, E9, FE, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, AC, D6, 41, 00, B2, 01...
 
[+]

Code size:
84 KB (86,016 bytes)

The file iobit-unlocker_1-1-32-64-bits_fr_379144.exe has been discovered within the following program.

IObit Unlocker  by IObit
Publisher's description - “Often when we try to delete a file or folder in Windows, we see annoying messages like "Cannot delete file: Access is denied" or "Cannot delete folder: It is being used" This is majorly because the file or folder is being used by another program or user.”
www.iobit.com
21% remove it
 
Powered by Should I Remove It?

The file iobit-unlocker_1-1-32-64-bits_fr_379144.exe has been seen being distributed by the following 8 URLs.

http://lb.cdn.m6web.fr/d/c/a/96b1fac397a7d5f6add31fcf378bd820/542ffab9/soft/.../iobit-unlocker_1-1-20140304_fr_379144.exe

temp:unlocker-setup.exe

Scan iobit-unlocker_1-1-32-64-bits_fr_379144.exe - Powered by Reason Core Security