imboostersetup.2.0.847.2_prod.exe

Iminent

The application imboostersetup.2.0.847.2_prod.exe, “Iminent Installation ” by Iminent has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is the uninstaller utility registered in the Windows Control Panel for the program IMBooster by Iminent.
Publisher:
Iminent   (signed by Iminent)

Description:
Iminent Installation

Version:
1.1

MD5:
8185b6908a138e62809302f744d92380

SHA-1:
ea04698814e9b32fdd842ff44c6344d63b1fe078

SHA-256:
83753aea3e3d34fafea4bf089b49a73e4cfb7437fe127d4cd59615680ff32907

Scanner detections:
1 / 68

Status:
Potentially unwanted

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/24/2024 4:10:13 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Sien.Iminent.Installer (M)
16.2.3.8

File size:
2.3 MB (2,400,160 bytes)

Copyright:
All rights reserved

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\{7de2d9b5-c959-4d68-9e63-e73738ef6f02}\imboostersetup.2.0.847.2_prod.exe

Digital Signature
Signed by:

Authority:
GlobalSign nv-sa

Valid from:
2/1/2008 9:20:59 AM

Valid to:
2/1/2009 9:20:59 AM

Subject:
E=alexandre.grigorescu@iminent.com, CN=Iminent, O=Iminent, C=FR

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000117D5961A16

File PE Metadata
Compilation timestamp:
6/1/2007 6:45:59 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:8tpqlp8QpqQTvADXt5Dhs9c4Oy6bciTXaNgyZWIiS8rKbvWJyaIWVLRUYLXCJ0z3:8HkTXtijilMIiS8rKbvWOadzR+z7UB

Entry address:
0x1C5374

Entry point:
55, 8B, EC, B9, 26, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, 53, 56, 57, B8, F0, 15, 5C, 00, E8, AB, 2F, E4, FF, 33, C0, 55, 68, 68, 6C, 5C, 00, 64, FF, 30, 64, 89, 20, E8, A0, 37, E4, FF, BA, 01, 00, 00, 00, E8, 26, B3, EE, FF, A1, B0, 11, 5D, 00, E8, E0, 06, E4, FF, 8D, 55, E4, 33, C0, E8, 26, D8, E4, FF, 8B, 45, E4, 8D, 55, E8, E8, 37, 68, E4, FF, 8B, 45, E8, 8D, 55, EC, E8, A8, BB, FF, FF, 8B, 55, EC, B8, C8, 87, 5D, 00, E8, 07, 07, E4, FF, 8D, 55, DC, 33, C0, E8, F9, D7, E4, FF, 8B, 45, DC, 8D, 55...
 
[+]

Entropy:
6.5054

Developed / compiled with:
Microsoft Visual C++

Code size:
1.8 MB (1,860,096 bytes)

Program Uninstaller
Program name:
IMBooster

Display publisher:
Iminent

Uninstall string:
"C:\ProgramData\{7DE2D9B5-C959-4D68-9E63-E73738EF6F02}\IMBoosterSetup.2.0.847.2_prod.exe" REMOVE=TRUE MODIFY=FALSE


Remove imboostersetup.2.0.847.2_prod.exe - Powered by Reason Core Security