clarify helper.exe

Clarify Helper

Blue Mango Multimedia LLC

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Clarify’.
Publisher:
Blue Mango Learning Systems  (signed by Blue Mango Multimedia LLC)

Product:
Clarify Helper

Description:
Clarify Helper 1.0.0.0 for Windows

Version:
1.0.0.0

MD5:
07325476a02bab21c730b53e8bf9d5c0

SHA-1:
d65a9b9fed789ca4eeaaccb3446dea4541a94ff1

SHA-256:
aa9e54880faad0f0a3623ee4e95ae450a7cea93c1e4fd1e482514b8bee2a67f0

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/28/2024 1:38:26 AM UTC  (today)

File size:
2.3 MB (2,414,728 bytes)

Product version:
1.0.0.0

Copyright:
2011 All rights reserved worldwide

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\clarify\components\agent\clarify helper.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
11/30/2011 7:00:00 PM

Valid to:
11/30/2012 6:59:59 PM

Subject:
CN=Blue Mango Multimedia LLC, O=Blue Mango Multimedia LLC, STREET=1948 Foxhall Road, L=McLean, S=Virginia, PostalCode=22101, C=US

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00CEC291AFADE74B32736B1CBE73692F28

File PE Metadata
Compilation timestamp:
9/15/2011 9:03:19 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
24576:O93OXayDnWwedouMD0SdQTMfXNhVCmlYiBm5lrYMgmM8RtBp22e7Z97P400rQRsO:GEvsgvGrlQzre6x1TPYEEllW

Entry address:
0x160B22

Entry point:
E8, F5, AC, 00, 00, E9, 16, FE, FF, FF, 53, 56, 8B, 74, 24, 0C, 57, 33, FF, 83, CB, FF, 3B, F7, 75, 1D, E8, 87, 26, 00, 00, 57, 57, 57, 57, 57, C7, 00, 16, 00, 00, 00, E8, F9, 9A, 00, 00, 83, C4, 14, 83, C8, FF, EB, 42, F6, 46, 0C, 83, 74, 37, 56, E8, 05, AF, 00, 00, 56, 8B, D8, E8, D1, AE, 00, 00, 56, E8, 9E, AE, 00, 00, 50, E8, CB, AD, 00, 00, 83, C4, 10, 85, C0, 7D, 05, 83, CB, FF, EB, 11, 8B, 46, 1C, 3B, C7, 74, 0A, 50, E8, 47, FA, FF, FF, 59, 89, 7E, 1C, 89, 7E, 0C, 8B, C3, 5F, 5E, 5B, C3, 6A, 0C, 68...
 
[+]

Entropy:
6.8823

Code size:
1.7 MB (1,814,528 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Clarify

Command:
"C:\Program Files\clarify\components\agent\clarify helper.exe"


Scan clarify helper.exe - Powered by Reason Core Security