hdhomerun_windows_20120128.exe

HDHomeRun

Silicondust

This is a self-extracting archive and installer. The file has been seen being downloaded from kaiserbaas.helpserve.com.
Publisher:
Silicondust  (signed and verified)

Product:
HDHomeRun

Description:
Silicondust HDHomeRun Windows Installer

Version:
1.0.725.0

MD5:
cd0fe2f29bf307781f5dad1ac41a2e84

SHA-1:
2c3e839f45175d538d6d1317e2706d56e0a2730c

SHA-256:
7c1ea9d3f8734a84cf07c73b51a4b1e1645203292ba00df93fcfdba1ecfd79af

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/30/2024 10:23:14 AM UTC  (today)

File size:
5 MB (5,216,888 bytes)

Product version:
1.0.725.0

Copyright:
Copyright (C) Silicondust

Original file name:
hdhomerun_windows.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\hdhomerun_windows_20120128.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
3/17/2011 11:00:00 AM

Valid to:
3/17/2012 10:59:59 AM

Subject:
CN=Silicondust, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Silicondust, L=Livermore, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7D305222BFC0D94DEEC20814EF9BBB08

File PE Metadata
Compilation timestamp:
1/17/2012 2:03:59 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:8pDEpdFsXp9tgY5AYxbdb0+tMC6ekpsNx3yQBXnXeER+hWSW1mwWdBieAm5Eg:8p2XsZxbdbZtMC6gLiGuhcUAmCg

Entry address:
0x2D4B7

Entry point:
E8, 97, 91, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 10, 53, FF, 75, 10, 8D, 4D, F0, E8, D8, FA, FF, FF, 33, DB, 39, 5D, 08, 75, 2E, E8, 45, 2B, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, CD, 2A, 00, 00, 83, C4, 14, 38, 5D, FC, 74, 07, 8B, 45, F8, 83, 60, 70, FD, B8, FF, FF, FF, 7F, E9, C7, 00, 00, 00, 56, 8B, 75, 0C, 3B, F3, 75, 2E, E8, 0F, 2B, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 97, 2A, 00, 00, 83, C4, 14, 38, 5D, FC, 74, 07, 8B, 45, F8, 83, 60, 70, FD, B8...
 
[+]

Entropy:
7.8385  (probably packed)

Code size:
250.5 KB (256,512 bytes)

The file hdhomerun_windows_20120128.exe has been seen being distributed by the following URL.

Scan hdhomerun_windows_20120128.exe - Powered by Reason Core Security