27749-672387-tuneup-utilities.exe

TuneUp Utilities 2013

TuneUp Software

This is a setup program which is used to install the application. The file has been seen being downloaded from 69.4.238.159 and multiple other hosts.
Publisher:
TuneUp Software  (signed and verified)

Product:
TuneUp Utilities 2013

Version:
13.0.3020.7

MD5:
cc4302b35f3f0182e684e2b9c297d22c

SHA-1:
9b0650c1abf780c1af5d73e8f066e534817e416d

SHA-256:
f1554c1220f7ea27aa4a96a59df2e3be941ab4d76377079d65f0e559e3e1d8ef

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 4:57:04 PM UTC  (today)

File size:
27.2 MB (28,529,504 bytes)

Product version:
13.0.3020.7

Trademarks:
TuneUp Utilities™

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\27749-672387-tuneup-utilities.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
6/18/2010 2:00:00 AM

Valid to:
6/18/2013 1:59:59 AM

Subject:
CN=TuneUp Software, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=TuneUp Software, L=Darmstadt, S=Hessen, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
5E34B34F2B3ABCE5978B5A1ED5B46E52

File PE Metadata
Compilation timestamp:
1/31/2013 10:39:46 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:pYSS6P5WOD5wDEC6YWEscqXcB+in72ff0aoeKegksAeqSu4YJX5TeboMp2e1Td13:PatAEcyneceQA5f1wbos2e31wAvuwby

Entry address:
0x2B631

Entry point:
E8, 63, BC, 00, 00, E9, 78, FE, FF, FF, CC, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B, 4C, 24, 04, 2B, C1, C3, 8D, 41, FE, 8B...
 
[+]

Code size:
280 KB (286,720 bytes)

The file 27749-672387-tuneup-utilities.exe has been discovered within the following program.

FlashPeak SlimBrowser  by FlashPeak Inc.
FlashPeak SlimBrowser bundles a branded version of the Conduit Toolbar, which delivers search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar. Once accepted, the packaged executable, ConduitInstaller.
www.slimbrowser.net
About 5% of users remove it
 
Powered by Should I Remove It?

The file 27749-672387-tuneup-utilities.exe has been seen being distributed by the following 7 URLs.

http://69.4.238.159/clr/.../tuneup-utilities.exe

Scan 27749-672387-tuneup-utilities.exe - Powered by Reason Core Security