offlineactivation.exe

Lavasoft Limited

This is a setup program which is used to install the application. The file has been seen being downloaded from www.lavasoft.com.
Publisher:
Lavasoft Limited  (signed and verified)

MD5:
0d979b05d52b83c5a106002a8f9459e2

SHA-1:
c8f5b60895e7ebcbe14e82e238e26b68055dc415

SHA-256:
1dff891e2d5888e8d0fd7e65b3fd9ba056707ba1733e45504b7f077fb5ba1bdb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/23/2024 1:48:57 PM UTC  (today)

File size:
5.6 MB (5,897,816 bytes)

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
Symantec Corporation

Valid from:
2/20/2015 1:00:00 AM

Valid to:
3/15/2017 12:59:59 AM

Subject:
CN=Lavasoft Limited, O=Lavasoft Limited, L=Sliema, S=Malta, C=MT

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
35F57ADDEF0015E6FEBE6AE2710D4873

File PE Metadata
Compilation timestamp:
11/26/2015 11:44:53 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
98304:p5S1AYkxlHjLQBz0LINPgby3y48po9Lx17DX:p5SirxlHwB5NPggYoJxJr

Entry address:
0x13E743

Entry point:
E8, BB, DB, 00, 00, E9, 7F, FE, FF, FF, 6A, 08, 68, 90, 64, 72, 00, E8, 77, A4, 00, 00, FF, 35, 14, 12, 75, 00, FF, 15, 8C, B1, 69, 00, 85, C0, 74, 16, 83, 65, FC, 00, FF, D0, EB, 07, 33, C0, 40, C3, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, 01, 00, 00, 00, CC, 6A, 08, 68, 70, 64, 72, 00, E8, 3F, A4, 00, 00, E8, 5E, A9, 00, 00, 8B, 40, 78, 85, C0, 74, 16, 83, 65, FC, 00, FF, D0, EB, 07, 33, C0, 40, C3, 8B, 65, E8, C7, 45, FC, FE, FF, FF, FF, E8, 3B, 50, 00, 00, CC, E8, 36, A9, 00, 00, 8B, 40, 7C, 85, C0...
 
[+]

Code size:
2.6 MB (2,724,864 bytes)

The file offlineactivation.exe has been seen being distributed by the following URL.

Scan offlineactivation.exe - Powered by Reason Core Security