housecalllauncher64.exe

Trend Micro iRobot

Trend Micro Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from go.trendmicro.com and multiple other hosts.
Publisher:
Trend Micro Inc.

Product:
Trend Micro iRobot

Description:
Trend Micro Application Launcher

Version:
1.61.0.1095

MD5:
6d7e7943673b469ee97b883b8932a935

SHA-1:
138a1df5327628e83d849e737b7a4e84c7b13468

SHA-256:
55eb4098978eb4336fa335506b1fe9097278d2e129b2a4cb07c4765622732204

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/26/2024 4:13:58 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW64.Paked
1.3.0.4959

File size:
2.4 MB (2,476,596 bytes)

Product version:
1.61

Copyright:
Copyright (C) 2014 Trend Micro Incorporated. All rights reserved.

Trademarks:
Copyright (C) Trend Micro Inc.

Original file name:
AppLauncher.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\housecalllauncher64.exe

File PE Metadata
Compilation timestamp:
9/5/2014 12:13:28 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:nw5rOMHMSiOuV+0H+q5Dhesu1CAlIlW8D8hO6K+Y3ALktYtJkcpsPiOT:orLsSi1HROsuo4M8hOZwwtYtJkbv

Entry address:
0x1975C

Entry point:
48, 83, EC, 28, E8, F3, 34, 00, 00, 48, 83, C4, 28, E9, 12, FE, FF, FF, CC, CC, 40, 53, 48, 83, EC, 30, 48, 8B, D9, B9, 0E, 00, 00, 00, E8, 99, 37, 00, 00, 90, 48, 8B, 43, 08, 48, 85, C0, 74, 44, 48, 8B, 0D, 84, AF, 01, 00, 48, 89, 4C, 24, 20, 48, 8D, 15, 70, AF, 01, 00, 48, 85, C9, 74, 1E, 48, 39, 01, 75, 0F, 48, 8B, 41, 08, 48, 89, 42, 08, E8, 61, F8, FF, FF, EB, 0A, 48, 8B, D1, 48, 89, 4C, 24, 20, EB, DD, 48, 8B, 4B, 08, E8, 4C, F8, FF, FF, 48, 83, 63, 08, 00, B9, 0E, 00, 00, 00, E8, 41, 36, 00, 00, 48...
 
[+]

Code size:
137.5 KB (140,800 bytes)

The file housecalllauncher64.exe has been seen being distributed by the following 3 URLs.

Scan housecalllauncher64.exe - Powered by Reason Core Security