avgsaveguardinstaller.exe

AVG Installer

AVG Technologies

This is a setup and installation application. The file has been seen being downloaded from cdn.airdlr2.com and multiple other hosts.
Publisher:
AVG Technologies  (signed and verified)

Product:
AVG Installer

Version:
14, 0, 0, 12

MD5:
20dcbde6356ead474b3c90ac71a12847

SHA-1:
156e85608ef3d8e2c1a20cb5f36c54e676e8345b

SHA-256:
953fcd61d43fff986bcc29a84ddaae62fd95f51444089da3dedd58d31431fde4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 4:49:19 PM UTC  (today)

File size:
2.8 MB (2,940,496 bytes)

Product version:
14, 0, 0, 12

Copyright:
Copyright (C) 2012

Original file name:
AVG Installer

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\nero20130821114643340\issetupprerequisites\avgsecuritytoolbar\avgsaveguardinstaller.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/29/2012 8:00:00 PM

Valid to:
3/30/2013 7:59:59 PM

Subject:
CN=AVG Technologies, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=AVG Technologies, L=Brno, S=Jihomoravsky kraj, C=CZ

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6CA2B6FE1C4D3E87627921B534D44DD7

File PE Metadata
Compilation timestamp:
12/18/2012 3:55:43 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:mXd11Uqi0wWDM085Qsx7nTwiG0BA/ShoYWAUoBY6P1R3xFgtCF6t8Yd8tQR82GGv:mXd1zi0wWb8u+UiGD1YWQRGndI72GGv

Entry address:
0x989A

Entry point:
E8, 6F, 7A, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 50, E2, 41, 00, 89, 0D, 4C, E2, 41, 00, 89, 15, 48, E2, 41, 00, 89, 1D, 44, E2, 41, 00, 89, 35, 40, E2, 41, 00, 89, 3D, 3C, E2, 41, 00, 66, 8C, 15, 68, E2, 41, 00, 66, 8C, 0D, 5C, E2, 41, 00, 66, 8C, 1D, 38, E2, 41, 00, 66, 8C, 05, 34, E2, 41, 00, 66, 8C, 25, 30, E2, 41, 00, 66, 8C, 2D, 2C, E2, 41, 00, 9C, 8F, 05, 60, E2, 41, 00, 8B, 45, 00, A3, 54, E2, 41, 00, 8B, 45, 04, A3, 58, E2, 41, 00, 8D, 45, 08, A3, 64, E2, 41...
 
[+]

Entropy:
7.9898  (probably packed)

Code size:
91.5 KB (93,696 bytes)

The file avgsaveguardinstaller.exe has been discovered within the following programs.

DriverUpdate  by SlimWare Utilities, Inc.
Publisher's description - “Updating System Drivers makes your computer run better. It prevents device errors and can even lend quicker repairs to future problems. SlimDrivers and DriverUpdate allow you to remove and update obsolete driver versions to prevent conflicts and maximize computer stability.”
www.driverupdate.net
44% remove it
Typing Trainer 8.0  by Typing Innovation Group Ltd
www.typingtrainer.com
About 2% of users remove it
 
Powered by Should I Remove It?

The file avgsaveguardinstaller.exe has been seen being distributed by the following 5 URLs.

http://cdn.airdlr2.com/downloads/offers/.../AVGsafeguard.exe

Scan avgsaveguardinstaller.exe - Powered by Reason Core Security