69highin.exe

Mindspark Toolbar Platform for Internet Explorer

Mindspark Interactive Network

The application 69highin.exe, “Mindspark Toolbar Platform” by Mindspark Interactive Network has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This version of the file will bundle a Mindspark/MyWebSearch Toolbar, a potentially unwanted web browser extension.
Publisher:
Mindspark  (signed by Mindspark Interactive Network)

Product:
Mindspark Toolbar Platform for Internet Explorer

Description:
Mindspark Toolbar Platform

Version:
1.0.7.262

MD5:
1657433a72d7de204badee7f40e08f73

SHA-1:
ea10a867c95bc90b970286868426966bc8a31391

SHA-256:
180496dd08e1a47aa3472d84638f57257489d0d317449a886d982c2a08f5a27f

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
1/13/2025 10:41:29 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.MyWebSearch (M)
17.3.9.3

File size:
13.9 MB (14,557,184 bytes)

Product version:
2.5.15.30

Copyright:
Copyright © 2009-2015 Mindspark Interactive Network, Inc.

Original file name:
t8HighIn.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\packagetracer_69\bar\1.bin\69highin.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
1/4/2016 5:30:00 AM

Valid to:
6/19/2018 5:29:59 AM

Subject:
CN=Mindspark Interactive Network, O=Mindspark Interactive Network, L=Yonkers, S=New York, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7E312B01F728FBB69DC3D253C5A66FBB

File PE Metadata
Compilation timestamp:
8/4/2015 10:46:14 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

Entry address:
0x103B

Entry point:
55, 8B, EC, B8, 50, 81, 00, 00, E8, 68, 02, 00, 00, 53, 56, 57, FF, 15, 0C, 20, 40, 00, 32, D2, 8A, 08, 80, F9, 20, 7F, 08, 84, C9, 74, 11, 84, D2, 74, 0D, 80, F9, 22, 75, 05, 84, D2, 0F, 94, C2, 40, EB, E4, 8A, 08, 84, C9, 74, 08, 80, F9, 20, 7F, 03, 40, EB, F2, 8D, 8D, B0, 7E, FF, FF, 8B, D0, 8B, C1, 33, FF, BE, 00, 80, 00, 00, 2B, D0, 8D, 86, FE, 7F, FF, 7F, 85, C0, 74, 0D, 8A, 04, 0A, 84, C0, 74, 06, 88, 01, 41, 4E, 75, E9, 85, F6, 75, 06, 49, BF, 7A, 00, 07, 80, C6, 01, 00, 89, 7D, FC, 85, FF, 0F, 88...
 
[+]

Entropy:
0.0205

Developed / compiled with:
Microsoft Visual C++

Code size:
1024 Bytes (1,024 bytes)

Remove 69highin.exe - Powered by Reason Core Security