f8386c132871ef48f6fa9c3af5e736de.exe

It runs as a separate (within the context of its own process) windows Service named “4e778c1c844c20bb2f7da4a741afa8b7”.
Version:
11.13.1.9

MD5:
349fe40e17b1c1479bd16a4dd7a4aa39

SHA-1:
787d11e497e503981f9e34987ffe2fdbefbf3063

SHA-256:
6b650ae2865f8d80d72a364e57431ac9cb2e7ddbf6908397665bebbcb346cc52

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 12:33:49 PM UTC  (today)

File size:
38 MB (39,824,896 bytes)

Product version:
11.13.1.9

Copyright:
Copyright (C) 2014

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\Program Files\4e778c1c844c20bb2f7da4a741afa8b7\f8386c132871ef48f6fa9c3af5e736de.exe

File PE Metadata
Compilation timestamp:
2/20/2017 7:40:38 PM

OS version:
6.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
12.0

Entry address:
0x2614E10

Entry point:
E9, 5E, 00, 00, 00, 9D, 1A, F6, 2D, A1, 37, 34, 81, 13, 66, 45, 85, A6, 77, 28, B4, 4E, B2, E9, 6F, 88, 78, 1B, B7, 85, DF, 3D, 67, C5, EB, FC, A7, 96, 26, 28, 87, 8F, B4, 3A, F8, 74, CA, 73, 18, A0, EA, BA, 86, 63, 71, E8, AC, 64, E5, A1, 3E, 08, 6D, C8, D0, E5, EB, EC, D3, 40, B5, 02, C9, 1A, 58, DA, 09, 53, 57, C5, E3, EE, E5, 23, 03, 69, 05, EC, CF, 36, 7E, 80, 32, 5D, 30, A0, 11, D1, 1E, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
35.6 MB (37,322,240 bytes)

Service
Display name:
4e778c1c844c20bb2f7da4a741afa8b7

Type:
Win32OwnProcess

Depends on:
RPCSS


The file f8386c132871ef48f6fa9c3af5e736de.exe has been discovered within the following program.

Social2Search  by Social2Search
www.technologietrudeau.com
About 61% of users remove it
 
Powered by Should I Remove It?

Scan f8386c132871ef48f6fa9c3af5e736de.exe - Powered by Reason Core Security