battlelog-web-plugins-1.102.0-retail-prod.exe

EA Digital Illusions CE AB

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from battlelog-cdn.battlefield.com.
Publisher:
EA Digital Illusions CE AB  (signed and verified)

MD5:
a1af71da5667a79b7b5df16affc727c7

SHA-1:
c47dc2a084432967d32229fb63eee3b8df7594ae

SHA-256:
1a01d767dc46d8b46adbf546f5e903a9fe09413ee0df2e51779da0ab93156df0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 2:09:50 AM UTC  (today)

File size:
3.7 MB (3,840,608 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\downloads\battlelog-web-plugins-1.102.0-retail-prod.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/2/2011 9:00:00 PM

Valid to:
5/2/2014 8:59:59 PM

Subject:
CN=EA Digital Illusions CE AB, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=EA Digital Illusions CE AB, L=Stockholm, S=Stockholms Lan, C=SE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
18F4AE46F276CE96CC56AD2377A76344

File PE Metadata
Compilation timestamp:
12/5/2009 6:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:kCLM1UGIK1dLpxcuDDQHglyd6Y3xSSIuoUGO66:zuUGIK1dLpVHQHYsTh+uoUGOZ

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Entropy:
7.9593

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file battlelog-web-plugins-1.102.0-retail-prod.exe has been discovered within the following program.

Adobe Edge Animate  by Adobe Systems Incorporated
Powerful features in Edge Animate CC help you easily create engaging content with animation and interactivity. Animate elements along fully customizable, fine-grain motion paths for highly expressive movements.
www.adobe.com/go/learn_animate_forum_en
8% remove it
 
Powered by Should I Remove It?

The file battlelog-web-plugins-1.102.0-retail-prod.exe has been seen being distributed by the following URL.

Scan battlelog-web-plugins-1.102.0-retail-prod.exe - Powered by Reason Core Security