updatenow64.exe

Hewlett-Packard Company

Publisher:
Hewlett-Packard Company  (signed and verified)

MD5:
8c3438489da1afadb0d321e99c1d6e84

SHA-1:
dc440e74e73c08a714c57cfc7653eb6b6d359c31

SHA-256:
1bc9f40e9182d5efe73b0f4efe504c98f3cd626c544f78f863faf01eced5a083

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 3:03:39 PM UTC  (today)

File size:
88.9 KB (91,040 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\updatenow\updatenow64.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/17/2011 2:00:00 AM

Valid to:
5/17/2014 1:59:59 AM

Subject:
CN=Hewlett-Packard Company, OU=Product Development IT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Hewlett-Packard Company, L=Andover, S=Massachusetts, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7A4D794B0B40D6C285E4ABA3FC2026AC

File PE Metadata
Compilation timestamp:
9/21/2012 12:51:58 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
9.0

CTPH (ssdeep):
1536:QafUm30SRt/JYPp3gfX9zXgcRdgqBSBAldqBr8N8kb6A1kvVGa+95JSu6CPl:QafZNRtxYPp3UZR6q4WdqZvA1kvVC95D

Entry address:
0x1CA4

Entry point:
48, 83, EC, 28, E8, 8B, 46, 00, 00, 48, 83, C4, 28, E9, 56, FE, FF, FF, CC, CC, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, 15, 39, 01, 00, FF, 15, 97, E3, 00, 00, 4C, 8B, 1D, 00, 3A, 01, 00, 4C, 89, 5C, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, FF, B4, 00, 00, 48, 89, 44, 24, 50, 48, 83, 7C, 24, 50, 00, 74, 41, 48, C7, 44, 24, 38, 00, 00, 00, 00, 48, 8D, 44, 24, 48, 48, 89, 44, 24, 30, 48, 8D, 44, 24, 40, 48, 89, 44, 24, 28, 48, 8D, 05, C0, 38, 01, 00, 48, 89, 44, 24...
 
[+]

Code size:
57 KB (58,368 bytes)