syminstallstub.exe

SymInstallStub

Symantec Corporation

This is a self-extracting archive and installer. The file has been seen being downloaded from liveupdate.symantecliveupdate.com.
Publisher:
Symantec Corporation  (signed and verified)

Product:
SymInstallStub

Version:
3.1.0.44

MD5:
063192228ca584c2fb4e2a2ad68f04e9

SHA-1:
c912999104426b1bf514119e8d5b83f943bdf5da

SHA-256:
5e983d99c5c0b39ab0b3225b78ea0993ca4c104cd0ad241ad01649be4167cdb8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 3:03:59 PM UTC  (today)

File size:
336.8 KB (344,888 bytes)

Product version:
3.1

Copyright:
Copyright (c) 2015 Symantec Corporation

Original file name:
SymInstallStub

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\norton security scan\engine\4.3.1.3\syminstallstub.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/8/2013 3:00:00 AM

Valid to:
1/7/2017 1:59:59 AM

Subject:
CN=Symantec Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Symantec Corporation, L=Mountain View, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
12DB9E53539B8E248BC77DD2BA611167

File PE Metadata
Compilation timestamp:
8/7/2015 1:52:21 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:dOMqGURlkfzSEc0kuKfhJD4DaWfehFbyp8zjxT43HBFrWOn86K/N6:BVURlk+Ec03Kf/DqfKmanoHDh8PF6

Entry address:
0x1000

Entry point:
B8, 24, BD, 54, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, B7, D4, A9, EA, 4A, 2D, 76, 4D, D7, 9F, F5, FB, CD, 50, A8, 49, D4, 70, 99, CB, 71, 82, 38, EB, 2D, 34, DE, B4, DA, FF, 83, D7, 89, 54, DC, 75, 3C, 28, 94, 37, F8, 5A, AB, 8A, DD, 3F, 6E, 4D, ED, 9A, 5B, 26, 95, 30, 52, 71, 73, 4E, EB, FE, 5F, E8, 40, 3A, 20, 17, A4, C1, 2E, 93, 1C, 38, 5C, 3B, 3C, 3B, 39, 59, 4D, 07, C0, 99, EF, 0A, 64, F2, 89, 9F, 1B, 59, 13, 61, FC...
 
[+]

Entropy:
7.9548

Packer / compiler:
PECompact v2

Code size:
730 KB (747,520 bytes)

The file syminstallstub.exe has been seen being distributed by the following URL.

Scan syminstallstub.exe - Powered by Reason Core Security