pptminimizernr.exe

balesio AG

This is a setup program which is used to install the application. The file has been seen being downloaded from pptminimizer.software.informer.com.
Publisher:
balesio AG  (signed and verified)

Description:
FILEminimizer (NR)

Version:
5.0.0.185

MD5:
a2f00e52bc381b72e75d7987ea380b0e

SHA-1:
e672aa322f2e32c88ff64dfed0ebf54451bb5325

SHA-256:
d085110d090b521c8b996370bf5e329c7a1acab88ec28105b7865dd9e4eb8337

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 1:15:38 PM UTC  (today)

File size:
3.7 MB (3,869,928 bytes)

Product version:
5.0.0.185

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\pptminimizernr.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
2/9/2009 1:00:00 AM

Valid to:
2/10/2010 12:59:59 AM

Subject:
CN=balesio AG, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=balesio AG, L=Baar, S=Zug, C=CH

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
765F4784C78A1B5FC819C43BC94E95E9

File PE Metadata
Compilation timestamp:
3/17/2009 4:29:19 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:ThlYSkvlzDgjz2dzjXVh3Jyxp6WZJeJ7revCgoSv:ThlbEzDu29XVCj6WZcJ7rBXq

Entry address:
0x1000

Entry point:
68, 01, B0, B2, 00, E8, 01, 00, 00, 00, C3, C3, 45, 77, DC, 0F, 38, C5, 96, 75, 12, D2, C7, C7, 2C, B7, 1E, B8, E4, 9B, 4F, EF, 14, 8E, 20, 9F, 14, 0C, 02, 56, 92, FF, 31, EE, B6, 51, 94, DA, 40, 16, 44, BB, 6C, 6F, 91, 87, 4C, F0, DD, 9A, 1A, BE, 5F, E1, 42, 34, A6, 36, 92, 94, B2, 08, 67, 2B, 35, F9, 65, 5D, 9D, 38, 88, C9, 49, 1A, 75, B8, 3F, 9E, 5B, 9D, 8A, 26, 0C, B8, DF, 35, AF, DE, C0, 1A, CC, 01, 9F, 6C, E2, 6C, 22, F8, 85, 93, 4E, 74, 1F, ED, 72, 8F, 21, 6A, 24, D1, 00, 0C, 3C, C6, 57, 7A, 7A, 9D...
 
[+]

Entropy:
7.9951

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
2.4 MB (2,471,424 bytes)

The file pptminimizernr.exe has been seen being distributed by the following URL.

Scan pptminimizernr.exe - Powered by Reason Core Security