adguardinstaller.exe

Insoft LLC

This is a self-extracting archive and installer. The file has been seen being downloaded from rusprogram.3dn.ru.
Publisher:
Insoft LLC  (signed and verified)

MD5:
675a887ad64c40fdb72328852714670f

SHA-1:
4d744ad52ef9512d966183606977cfe731ae9345

SHA-256:
28c64a04b211f913d590ec05d0f9dbca2c69124d53b26e289c45dbc487c4d40e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 10:13:59 AM UTC  (today)

File size:
388 KB (397,360 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\adguardinstaller.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
2/12/2013 10:02:34 PM

Valid to:
2/13/2016 7:58:40 PM

Subject:
E=support.en@adguard.com, CN=Insoft LLC, O=Insoft LLC, L=Moscow, S=Moscow, C=RU

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11217943575E821301807A43EAC9AE8FE273

File PE Metadata
Compilation timestamp:
3/18/2014 11:39:35 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:yAAZV3/1pa8C6RcZBtpraL5vBGSKG00SV3OwR13sjpyn8dO:yAWF/1pJcZBtlaVvASKG00SV7ajxdO

Entry address:
0x3AD0

Entry point:
55, 8B, EC, 81, EC, F0, 03, 00, 00, 56, 6A, 00, FF, 15, 2C, 50, 40, 00, A3, 10, 60, 40, 00, 6A, 00, 6A, 00, 6A, 00, 8D, 4D, EC, E8, 9B, F5, FF, FF, 6A, 00, 8D, 45, EC, 50, 8D, 4D, FC, 51, E8, BA, FE, FF, FF, 8D, 4D, E0, E8, 24, DB, FF, FF, 68, 00, 02, 00, 00, 8D, 4D, D8, E8, E7, D4, FF, FF, 68, 00, 04, 00, 00, 8D, 4D, D8, E8, 1A, D5, FF, FF, 50, 6A, 00, FF, 15, 2C, 50, 40, 00, 50, FF, 15, 30, 50, 40, 00, 68, FF, 03, 00, 00, 68, F0, 51, 40, 00, 8D, 4D, D8, E8, F8, D4, FF, FF, 50, 8D, 4D, E0, E8, 0F, DB, FF...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
14.5 KB (14,848 bytes)

The file adguardinstaller.exe has been seen being distributed by the following URL.

Scan adguardinstaller.exe - Powered by Reason Core Security