yousee_mailsupport_pc.exe

YouSee Mailsupport

InfoTechKnowledge S.A.

This is a setup program which is used to install the application. The file has been seen being downloaded from supporttools.yousee.dk.
Publisher:
YouSee A/S, internetsupport@yousee.dk  (signed by InfoTechKnowledge S.A.)

Product:
YouSee Mailsupport

Version:
2.1.14.0

MD5:
5c61e0f0a4952c392b07192f2c35a738

SHA-1:
afc36d3f84af6d971072d0b76b53bc86c81c9612

SHA-256:
da88a3f227babb59e13c169f52ec319132077d791d5550fad0788a6e27ef8026

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
5/8/2024 11:11:13 AM UTC  (today)

Scan engine
Detection
Engine version

NANO AntiVirus
Virus.Win32.Chiton.cnmqve
0.30.0.296

Trend Micro House Call
Suspicious_GEN.F47V0206
7.2.66

File size:
15.9 MB (16,711,088 bytes)

Product version:
2.1.14.0

Copyright:
Copyright by InfoTech Knowledge

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\yousee_mailsupport_pc.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
10/1/2013 5:03:43 PM

Valid to:
12/3/2016 1:07:26 PM

Subject:
CN=InfoTechKnowledge S.A., O=InfoTechKnowledge S.A., C=CH

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112172407FD8014BA6C32F44A32136ECA063

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:QDlN2tKXnUQZYly9+G1aVizQdrnatuAEq4:QDlQtKXnUQayULqu564

Entry address:
0x3274

Entry point:
55, 8B, EC, 83, C4, F4, B8, 3C, 32, 01, 00, E8, 98, E9, FF, FF, E8, 43, FF, FF, FF, E8, 7E, FF, FF, FF, E8, 15, FE, FF, FF, E8, AC, E4, FF, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9998

Developed / compiled with:
Microsoft Visual C++

Code size:
9 KB (9,216 bytes)

The file yousee_mailsupport_pc.exe has been seen being distributed by the following URL.

Scan yousee_mailsupport_pc.exe - Powered by Reason Core Security