64bit_vista_win7_r268.exe

Realtek HD Audio

Realtek Semiconductor Corp.

This is a setup program which is used to install the application. The file has been seen being downloaded from filehippo.com and multiple other hosts.
Publisher:
Realtek Semiconductor Corp.

Product:
Realtek HD Audio

Version:
R2.68

MD5:
92a1baa7c2eed744c8a9b99470744f94

SHA-1:
32fafb2eeb07a45f027985e535c672c732f0b40d

SHA-256:
948d3c430bb2c7e8766891b9a2b643a1e7019d9b12c027ca5b23a5d3af0e080c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 8:36:29 PM UTC  (today)

File size:
66.2 MB (69,389,251 bytes)

Product version:
R2.68

Original file name:
stub32i.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\dokumente\drivergenius\downloads\64bit_vista_win7_r268.exe

File PE Metadata
Compilation timestamp:
3/27/2000 8:09:58 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1572864:glBEgUyt3vnpWMsLAyEqbA2MSv1B21uCzw2eO2eP/WkEUn:KBPTv+LA/qclO1B0zmO2ePP7

Entry address:
0x83F7

Entry point:
55, 8B, EC, 6A, FF, 68, 10, 23, 41, 00, 68, 30, B5, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, E8, 21, 41, 00, 33, D2, 8A, D4, 89, 15, 30, 53, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 2C, 53, 41, 00, C1, E1, 08, 03, CA, 89, 0D, 28, 53, 41, 00, C1, E8, 10, A3, 24, 53, 41, 00, 33, F6, 56, E8, E0, 00, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 11, 2F, 00, 00, FF, 15, EC, 21, 41, 00, A3, E4, 68, 41, 00, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
68 KB (69,632 bytes)

The file 64bit_vista_win7_r268.exe has been discovered within the following program.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
 
Powered by Should I Remove It?

The file 64bit_vista_win7_r268.exe has been seen being distributed by the following 5 URLs.

http://filehippo.com/download/file/.../

http://cdn.evga.com/driver/.../64bit_Vista_Win7_R268.exe

http://www.drivehq.com/file/df.aspx/publish/evgaanon/.../64bit_Vista_Win7_R268.exe

ftp://ftp.evga.com/.../64bit_Vista_Win7_R268.exe

Scan 64bit_vista_win7_r268.exe - Powered by Reason Core Security