_htc touch hd_bla_s00279.exe

OEM Sign 2005

This is a setup program which is used to install the application. It runs as a scheduled task under the Windows Task Scheduler. The file has been seen being downloaded from dl4.htc.com.
Publisher:
OEM Sign 2005  (signed and verified)

MD5:
f956e97e039704fbcbb4c817eef1e886

SHA-1:
f95a60f738ba1607e77302fca624a6f5c5419c19

SHA-256:
c778e11d3ebe57090f6e32e4dacb2d3ecbd1d008ba764b5fe95b1f7eae2c90ca

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 1:13:24 PM UTC  (today)

File size:
179.5 KB (183,800 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\_htc touch hd_bla_s00279.exe

Digital Signature
Signed by:

Authority:
OEM Sign 2005

Valid from:
8/10/2005 4:41:52 PM

Valid to:
1/1/2040 12:59:59 AM

Subject:
CN=OEM Sign 2005

Issuer:
CN=OEM Sign 2005

Serial number:
334C13E13717F7B34D5F776D2DDDACA4

File PE Metadata
Compilation timestamp:
7/21/2009 1:21:13 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:

Linker version:
6.24

CTPH (ssdeep):
3072:ff8ltUKpgtbba7TEfTSCHTW5l0+QaRXpjJRyKIZQzopdtbba7TEfTSCHxW5l0+Q8:385Wb+KTW5l04wQEpnb+KxW5l04SZzl4

Entry address:
0x3710

Entry point:
0D, C0, A0, E1, F0, 58, 2D, E9, 1C, B0, 8D, E2, 04, D0, 4D, E2, 00, 70, A0, E1, 01, 60, A0, E1, 02, 50, A0, E1, 03, 40, A0, E1, 12, 00, 00, EB, 04, 30, A0, E1, 05, 20, A0, E1, 06, 10, A0, E1, 07, 00, A0, E1, D4, F6, FF, EB, 00, 40, A0, E1, 20, 40, 0B, E5, 01, 00, 00, EA, 00, 40, A0, E1, 20, 00, 00, EB, 04, 00, A0, E1, 1E, 00, 00, EB, F0, A8, 1B, E9, 04, E0, 2D, E5, 00, 10, A0, E1, 00, 00, 91, E5, 00, 00, 90, E5, 5C, 00, 00, EB, 00, 80, BD, E8, 04, E0, 2D, E5, 20, 10, 9F, E5, 18, 00, 9F, E5, 07, 00, 00, EB...
 
[+]

Code size:
10.5 KB (10,752 bytes)

Scheduled Task
Task name:
{6FA7C1FE-C222-485D-8ED4-99533851D4A8}

Trigger:
Registration (Runs on registration)


The file _htc touch hd_bla_s00279.exe has been seen being distributed by the following URL.

Scan _htc touch hd_bla_s00279.exe - Powered by Reason Core Security