tmp~~~setup-home241.exe

MyPublisher Inc.

This is installed with MyPublisher.
Publisher:
MyPublisher Inc.  (signed and verified)

MD5:
58b336a1a004c530c72bce779cd7d983

SHA-1:
4af7784bc107e319b14c64b4f75b2e7c192cffdd

SHA-256:
4b076f63af5acbf215c940c6736373010b5d92920f19b338d9200d95cbe8236a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:35:35 PM UTC  (a few moments ago)

File size:
13.9 MB (14,574,856 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\tmp~~~setup-home241.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/2/2006 5:00:00 PM

Valid to:
11/13/2009 3:59:59 PM

Subject:
CN=MyPublisher Inc., OU=IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=MyPublisher Inc., L=Valhalla, S=New York, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
39F9B9EEE21838D80F5D30F13238A3A3

File PE Metadata
Compilation timestamp:
6/25/2009 3:59:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
196608:oPEYUQL9NAryQhNfEof/fxIRlJ0Vi8Bz1F+8V6fRk5xlNG2wQ/ZIf1ScrAzb0jl:LY3L9NpQhnfXK0VHc8gGxlNHw715rAm

Entry address:
0x168BA6

Entry point:
E8, 0D, DA, 00, 00, E9, 16, FE, FF, FF, E8, 84, 58, 00, 00, FF, 74, 24, 04, E8, DB, 56, 00, 00, FF, 35, 74, 08, 5C, 00, E8, D5, 4F, 00, 00, 68, FF, 00, 00, 00, FF, D0, 83, C4, 0C, C3, 68, 10, B6, 5A, 00, FF, 15, 3C, A3, 58, 00, 85, C0, 74, 16, 68, 00, B6, 5A, 00, 50, FF, 15, 54, A1, 58, 00, 85, C0, 74, 06, FF, 74, 24, 04, FF, D0, C3, FF, 74, 24, 04, E8, D1, FF, FF, FF, 59, FF, 74, 24, 04, FF, 15, A8, A2, 58, 00, CC, 6A, 08, E8, A0, C4, 00, 00, 59, C3, 6A, 08, E8, BF, C3, 00, 00, 59, C3, 56, 8B, F0, EB, 0B...
 
[+]

Entropy:
7.8477  (probably packed)

Code size:
1.5 MB (1,609,728 bytes)

The file tmp~~~setup-home241.exe has been discovered within the following program.

MyPublisher  by MyPublisher, Inc.
www.mypublisher.com
About 4% of users remove it
 
Powered by Should I Remove It?

Scan tmp~~~setup-home241.exe - Powered by Reason Core Security