Breakaway.exe

Breakaway Audio Enhancer

Claesson Edwards Audio LLC

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Breakaway’.
Publisher:
ClaessonEdwards LLC  (signed by Claesson Edwards Audio LLC)

Product:
Breakaway Audio Enhancer

Version:
1,3,0,05

MD5:
d260ff667103163cc83b75a389985b98

SHA-1:
67fc30a40db3eef3b302e17fc738eff60b0149be

SHA-256:
0bb76b96c6e566c535cbef363b7ab35d030365c01587d6986d9c9fc83d8bcee4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/10/2025 10:01:17 PM UTC  (today)

File size:
5.9 MB (6,215,896 bytes)

Product version:
1,3,0,05

Copyright:
Copyright (C) 2008-2010 Leif Claesson

Original file name:
Breakaway.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\breakaway\breakaway.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
3/7/2016 2:00:00 AM

Valid to:
3/8/2017 1:59:59 AM

Subject:
CN=Claesson Edwards Audio LLC, O=Claesson Edwards Audio LLC, L=Antioch, S=California, C=US, SERIALNUMBER=200728510164, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=California, OID.1.3.6.1.4.1.311.60.2.1.3=US

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA - G2, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
049019587EB251FFAD391F706291A134

File PE Metadata
Compilation timestamp:
6/6/2016 10:20:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:Ar+JyPwLA+mInJVTL6XhVJ6s9SeZZmF89fKH:yPePmMDTLCVJr3ZmHH

Entry address:
0xA3F000

Entry point:
56, 50, 53, E8, 01, 00, 00, 00, CC, 58, 89, C3, 40, 2D, 00, 60, 2F, 00, 2D, C0, 2F, 78, 06, 05, B7, 2F, 78, 06, 80, 3B, CC, 75, 19, C6, 03, 00, BB, 00, 10, 00, 00, 68, 5E, 3F, EB, 26, 68, 6D, 0B, 81, 72, 53, 50, E8, 0A, 00, 00, 00, 83, C0, 00, 89, 44, 24, 08, 5B, 58, C3, 55, 89, E5, 50, 53, 51, 56, 8B, 75, 08, 8B, 4D, 0C, C1, E9, 02, 8B, 45, 10, 8B, 5D, 14, 85, C9, 74, 0A, 31, 06, 01, 1E, 83, C6, 04, 49, EB, F2, 5E, 59, 5B, 58, C9, C2, 10, 00, E9, 1B, 0A, 60, 7C, D0, 23, 8B, 3F, 91, 6B, 67, 1A, 45, 12, 3A...
 
[+]

Entropy:
7.7942  (probably packed)

Code size:
2.2 MB (2,306,048 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Breakaway

Command:
"C:\Program Files\breakaway\breakaway.exe" force


Scan Breakaway.exe - Powered by Reason Core Security