htc-sync.exe

Ultra Setup Manager

Husren SA

Publisher:
MS  (signed by Husren SA)

Product:
Ultra Setup Manager

Version:
1.0.3.18

MD5:
08f30b7513dd99f2d157fe743cba7f42

SHA-1:
d72d604c5b6c0f1f96a60d40a9916a6c1c3d4aa9

SHA-256:
bfc92a57bbf6856acc1ce85e004b8412e9c5db8e9e9993c0fb58c381f572e3ed

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/23/2024 10:37:58 PM UTC  (today)

Scan engine
Detection
Engine version

herdProtect (fuzzy)
2015.9.28.7

Panda Antivirus
PUP/Multitoolbar
15.09.28.07

VIPRE Antivirus
Iminent
42710

File size:
69.6 KB (71,272 bytes)

Product version:
1.0.3.18

Copyright:
Copyright © 2015

Trademarks:
MS

Original file name:
iEx.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\htc-sync.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/11/2015 8:00:00 PM

Valid to:
6/11/2016 7:59:59 PM

Subject:
CN=Husren SA, OU=602, O=Husren SA, STREET=Colonia 810 esc502, L=Montevideo, S=Montevideo, PostalCode=11000, C=UY

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
13D29ADB2F499B625116D9BBF3D8B83F

File PE Metadata
Compilation timestamp:
8/6/2015 5:14:01 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:M00nzQDKAFsnv42/09CpUku/P2EBxIkWJ3MuihHwsKanVKHBZt4fMszYcHeWMZVr:uo+nwV8yku/L03MuiQbHJ//aTriN

Entry address:
0xC5BE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 03, 00, 00, 00, 30, 00, 00, 80, 0E, 00, 00, 00, 60, 00, 00, 80, 10, 00, 00, 00, 90, 00, 00, 80, 18, 00, 00, 00, C0, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4700

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
41.5 KB (42,496 bytes)

The file htc-sync.exe has been seen being distributed by the following 6 URLs.

Scan htc-sync.exe - Powered by Reason Core Security