hogialoninstallation.exe

Hogia Lön

Hogia

This is a self-extracting archive and installer. The file has been seen being downloaded from www.kundtorg.hogia.se.
Publisher:
Hogia Business Products AB   (signed by Hogia)

Product:
Hogia Lön

Description:
Hogia Lön Installation

Version:
2016.1

MD5:
be0e0df86cd61b1827ae436c00bc9198

SHA-1:
20e9b72eb31d277a6799d1906517f63d8b02c0ed

SHA-256:
3e6ece2e097facb8ac6f8599cc22433ca27750de84d97fb5dc14100236179912

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 8:19:57 PM UTC  (today)

File size:
36.5 MB (38,250,304 bytes)

Product version:
2016.10, 0

Copyright:
All rights reserved

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\hogialoninstallation.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
1/8/2015 1:00:00 AM

Valid to:
4/9/2018 1:59:59 AM

Subject:
CN=Hogia, O=Hogia, L=STENUNGSUND, S=Stenungsund, C=SE

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
51F5669BDDC72EF399AE9E56BAF70634

File PE Metadata
Compilation timestamp:
7/30/2015 8:38:24 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
786432:tKAHvFCdWoLk2QrYB8I6b1oI5cRv/LEXu3jwSXDIr1nZe4NJzFek:DFCdtk2cLI6zc1A+zwZr1nld

Entry address:
0x21B06

Entry point:
E8, E1, 34, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, B8, 93, 43, 00, 89, 0D, B4, 93, 43, 00, 89, 15, B0, 93, 43, 00, 89, 1D, AC, 93, 43, 00, 89, 35, A8, 93, 43, 00, 89, 3D, A4, 93, 43, 00, 66, 8C, 15, D0, 93, 43, 00, 66, 8C, 0D, C4, 93, 43, 00, 66, 8C, 1D, A0, 93, 43, 00, 66, 8C, 05, 9C, 93, 43, 00, 66, 8C, 25, 98, 93, 43, 00, 66, 8C, 2D, 94, 93, 43, 00, 9C, 8F, 05, C8, 93, 43, 00, 8B, 45, 00, A3, BC, 93, 43, 00, 8B, 45, 04, A3, C0, 93, 43, 00, 8D, 45, 08, A3, CC, 93, 43...
 
[+]

Code size:
179 KB (183,296 bytes)

The file hogialoninstallation.exe has been seen being distributed by the following URL.

Scan hogialoninstallation.exe - Powered by Reason Core Security