familytreemaker2012esd_ancestrycs.exe

Family Tree Maker 2012 ESD

Nova Development

This is a setup program which is used to install the application. The file has been seen being downloaded from download.avanquest.com and multiple other hosts.
Publisher:
Nova Development   (signed by Nova Development)

Product:
Family Tree Maker 2012 ESD

Version:
1.1

MD5:
65fc2e49f4ebfcaaacad8e01d69ec8fa

SHA-1:
d6d476d2863774e8352ae09ab18c3e77ded6b666

SHA-256:
d06461d4b45b87e5dbf89bbff711017af08ca716db70485740fd91f09fa5c490

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 12:21:10 PM UTC  (today)

File size:
562.2 MB (589,524,144 bytes)

Product version:
1.1

Original file name:
stub32i.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\familytreemaker2012esd_ancestrycs.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
5/17/2009 7:00:00 PM

Valid to:
7/4/2012 6:59:59 PM

Subject:
CN=Nova Development, OU=Secure Code Signing, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Nova Development, L=Calabsasas, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2004 CA, OU=Terms of use at https://www.verisign.com/rpa (c)04, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
734731CE5C202DDC1D4FD71B0B4762F8

File PE Metadata
Compilation timestamp:
8/2/2002 2:01:18 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12582912:mVX8JMJIcqtlMPoM7u2HzauhU7+h7xMTcbbDImpDxFtecn:mpUNMPDTP6Q7xGGbDImpDvtecn

Entry address:
0x8AF7

Entry point:
55, 8B, EC, 6A, FF, 68, 20, 43, 41, 00, 68, F0, C3, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, F0, 41, 41, 00, 33, D2, 8A, D4, 89, 15, 7C, 93, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 78, 93, 41, 00, C1, E1, 08, 03, CA, 89, 0D, 74, 93, 41, 00, C1, E8, 10, A3, 70, 93, 41, 00, 33, F6, 56, E8, 70, 02, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, D1, 36, 00, 00, FF, 15, F4, 41, 41, 00, A3, 4C, BA, 41, 00, E8...
 
[+]

Entropy:
8.0000

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
76 KB (77,824 bytes)

The file familytreemaker2012esd_ancestrycs.exe has been discovered within the following program.

Family Tree Maker 2012  by Ancestry.com, Inc.
Publisher's description - “Family Tree Maker is the ideal tool to help you discover and preserve your family’s heritage. It’s quick and easy to use for those just starting to research their family history, but it’s also robust enough for the most serious genealogist.”
www.familytreemaker.com
3% remove it
 
Powered by Should I Remove It?

The file familytreemaker2012esd_ancestrycs.exe has been seen being distributed by the following 2 URLs.

Scan familytreemaker2012esd_ancestrycs.exe - Powered by Reason Core Security