mikogo-host.exe

Mikogo

Mikogo GmbH

This is a setup program which is used to install the application. It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Mikogo’. The file has been seen being downloaded from download.mikogo4.com.
Publisher:
Mikogo GmbH  (signed and verified)

Product:
Mikogo

Version:
5.0.0.0

MD5:
24578b64a521da644c5025887e30bd99

SHA-1:
25ea4739ffecfcf818c91f098aad1208c46f0adf

SHA-256:
d6400361c9719731ac8cbf9debb49e6a0077cb67293af2f8c679d0b1f8346e0f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:32:01 PM UTC  (today)

File size:
6.4 MB (6,760,264 bytes)

Product version:
5.0.0

Copyright:
Copyright (C) 2013 Mikogo GmbH

Original file name:
mikogo_host.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\mikogo\mikogo-host.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
3/5/2013 6:00:00 PM

Valid to:
3/5/2016 5:59:59 PM

Subject:
CN=Mikogo GmbH, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Mikogo GmbH, L=Mannheim, S=Baden Württemberg, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
014E47F6F15DEB6BE9DD018041262830

File PE Metadata
Compilation timestamp:
11/29/2013 3:05:44 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:Vz9uY67CtDExyTDqYQ1QI5j9MbeJ+zQTkc:HK7CeoOV55pVJ+mkc

Entry address:
0x11EF990

Entry point:
60, BE, 00, 40, F9, 00, 8D, BE, 00, D0, 46, FF, C7, 87, 60, DF, 10, 01, 1E, 7E, 7E, 7E, 57, EB, 11, 90, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46...
 
[+]

Entropy:
7.9078  (probably packed)

Code size:
6.4 MB (6,668,288 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Mikogo

Command:
"C:\users\{user}\appdata\roaming\mikogo\mikogo-host.exe" -asp


The file mikogo-host.exe has been discovered within the following program.

Mikogo  by BeamYourScreen GmbH
Mikogo is a desktop sharing software application for web conferencing and remote support, and is provided by the online collaboration provider, BeamYourScreen GmbH. Mikogo provides its software as native downloads for Windows.
www.mikogo.com
About 6% of users remove it
 
Powered by Should I Remove It?

The file mikogo-host.exe has been seen being distributed by the following URL.

Scan mikogo-host.exe - Powered by Reason Core Security