hotfix-bullguard15-04.exe

BullGuard

BullGuard Ltd.

Publisher:
BullGuard Ltd.  (signed and verified)

Product:
BullGuard

Description:
BullGuard Hotfix #20

Version:
15.0.0.0

MD5:
7fe440c43dc1b57fa1ba9b2f01f86e23

SHA-1:
ebc085e9a9cee1e66059f7d2366b2ee52d0ab458

SHA-256:
d785ba5836235beac7562e1242cb3f45b5a8140d92c10cb3d7e64d3748731ca2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 4:01:32 AM UTC  (today)

File size:
184.3 KB (188,712 bytes)

Product version:
15.0.0.0

Copyright:
©2004-2015, BullGuard Ltd. All rights reserved.

Original file name:
BullGuardHotfix20.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\hotfix-bullguard15-04.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
10/3/2013 3:17:17 AM

Valid to:
11/28/2015 1:07:14 AM

Subject:
CN=BullGuard Ltd., OU=IT, O=BullGuard Ltd., L=Heathrow, S=Middlesex, C=GB

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11215F21A71B97B71413D7ABE170135E2B7E

File PE Metadata
Compilation timestamp:
7/14/2015 7:39:08 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:t+5ZHntCdrDk2toZT4yMTnpLj5moeIVid+CAKt0Dx3fsDTuzTmfUhlnnny:t+5ZHn4rDkYTnJdleddS/mKmfi5y

Entry address:
0x7B6C

Entry point:
48, 83, EC, 28, E8, DF, 63, 00, 00, 48, 83, C4, 28, E9, 36, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, 66, 66, 0F, 1F, 84, 00, 00, 00, 00, 00, 4C, 8B, D9, 49, 83, F8, 08, 72, 6B, 0F, B6, D2, 0F, BA, 25, 04, 89, 01, 00, 01, 73, 0E, 57, 48, 8B, F9, 8B, C2, 49, 8B, C8, F3, AA, 5F, EB, 5F, 49, B9, 01, 01, 01, 01, 01, 01, 01, 01, 49, 0F, AF, D1, 49, 83, F8, 40, 72, 1E, 48, F7, D9, 83, E1, 07, 74, 06, 4C, 2B, C1, 49, 89, 13, 49, 03, CB, 4D, 8B, C8, 49, 83, E0, 3F, 49, C1, E9, 06, 75, 41, 4D, 8B, C8, 49, 83, E0...
 
[+]

Entropy:
6.1368

Code size:
69 KB (70,656 bytes)

The file hotfix-bullguard15-04.exe has been seen being distributed by the following URL.

Scan hotfix-bullguard15-04.exe - Powered by Reason Core Security