originthinsetup.exe

Origin

Electronic Arts, Inc.

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is installed with Origin. The file has been seen being downloaded from es.kioskea.net and multiple other hosts.
Publisher:
Electronic Arts, Inc.  (signed and verified)

Product:
Origin

Version:
9.1.15.109

MD5:
5b37d12195597dc67bbf0e9a46226782

SHA-1:
2d7c6f45d4e644d9753e4ee50ddaaed1ee9adacf

SHA-256:
a28d7edab9861298e09eba3da09b5216207f6d86bfde521352e9e32d1aa12c04

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 10:49:14 PM UTC  (today)

File size:
11.3 MB (11,821,312 bytes)

Copyright:
Electronic Arts, Inc © 2011

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\originthinsetup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/5/2011 2:00:00 AM

Valid to:
7/5/2013 1:59:59 AM

Subject:
CN="Electronic Arts, Inc.", OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=EAC, O="Electronic Arts, Inc.", L=Burnaby, S=British Columbia, C=CA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
73EF9D9A62FCCB9DB8754455E5E8DA19

File PE Metadata
Compilation timestamp:
2/1/2012 6:12:42 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:5FZl2NFwFZl2vtZvIpfVLSM4kp42I6PjzayuSgMKykQgSaTkvMxEYT3OfPShdJsh:v92tZvIpflS8nj2ZrMKykQgRdFwoJses

Entry address:
0x33E2

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, 88, 85, 40, 00, 89, 6C, 24, 14, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 80, 40, 00, 55, FF, 15, B4, 82, 40, 00, 6A, 08, A3, D8, B5, 42, 00, E8, 4B, 29, 00, 00, 55, 68, B4, 02, 00, 00, A3, E0, B4, 42, 00, 8D, 44, 24, 38, 50, 55, 68, 84, 85, 40, 00, FF, 15, 84, 81, 40, 00, 68, 6C, 85, 40, 00, 68, E0, A4, 42, 00, E8, 1B, 28, 00, 00, FF, 15, B0, 80, 40, 00, 50, BB, 00, 60, 43, 00, 53, E8, 09, 28, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
25.5 KB (26,112 bytes)

The file originthinsetup.exe has been discovered within the following programs.

Origin  by Electronic Arts
Origin (EA Store) is a digital distribution, digital rights management system from Electronic Arts that allows users to purchase games on the internet for PC and mobile platforms, and download them with the Origin client (formerly EA Download Manager).
www.ea.com
24% remove it
 
Powered by Should I Remove It?

The file originthinsetup.exe has been seen being distributed by the following 5 URLs.

http://es.kioskea.net/download/.../descargar-424-need-for-speed-underground

Scan originthinsetup.exe - Powered by Reason Core Security