MSEInstall.exe

Microsoft Security Client

Microsoft Corporation

The MSEInstall Package is the installer for Microsoft Security Essentials, an anti-virus protection platform. Upon new releases/updates of MSEInstall, Windows Update will download the client and install it. This is a setup and installation application. The file has been seen being downloaded from gsf-cf.softonic.com and multiple other hosts.
Publisher:
Microsoft Corporation  (signed and verified)

Product:
Microsoft Security Client

Description:
MSEInstall Package

Version:
4.4.0304.0

MD5:
fdabf16dcb18985c7f9944dc07d4c0cb

SHA-1:
452295282be3f3b47e51f55867f34f77e1570b9c

SHA-256:
524a0184c83c0b21cb1e1fc9a636c541cb9fad25e96f94f87f5de7f03ebd24e5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
11/23/2024 10:43:54 AM UTC  (today)

File size:
10.6 MB (11,153,744 bytes)

Product version:
4.4.0304.0

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
MSEInstall.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\mseinstall.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
1/24/2013 11:33:36 PM

Valid to:
4/25/2014 12:33:36 AM

Subject:
CN=Microsoft Corporation, OU=AOC, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
33000000ADC6484C2DCB9A424C0001000000AD

File PE Metadata
Compilation timestamp:
3/13/2009 7:51:25 AM

OS version:
5.2

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
196608:7yMEYOQd2erzG7plWxEU0LLcxavGo3nLF5qtpPbJHAAj1HWKpe+m:77/Oy1HEyEDLcxavP5qntHPj12z+m

Entry address:
0x6B23

Entry point:
6A, 28, 68, B0, 26, 00, 01, E8, AD, 01, 00, 00, 66, 81, 3D, 00, 00, 00, 01, 4D, 5A, 75, 28, A1, 3C, 00, 00, 01, 81, B8, 00, 00, 00, 01, 50, 45, 00, 00, 75, 17, 0F, B7, 88, 18, 00, 00, 01, 81, F9, 0B, 01, 00, 00, 74, 21, 81, F9, 0B, 02, 00, 00, 74, 06, 83, 65, E4, 00, EB, 2A, 83, B8, 84, 00, 00, 01, 0E, 76, F1, 33, C9, 39, 88, F8, 00, 00, 01, EB, 11, 83, B8, 74, 00, 00, 01, 0E, 76, DE, 33, C9, 39, 88, E8, 00, 00, 01, 0F, 95, C1, 89, 4D, E4, 83, 65, FC, 00, 6A, 01, FF, 15, EC, 21, 00, 01, 59, 83, 0D, 2C, D4...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v7.1

Code size:
35 KB (35,840 bytes)

The file MSEInstall.exe has been seen being distributed by the following 35 URLs.

http://gsf-cf.softonic.com/452/295/.../file?SD_used=0&channel=WEB&fdh=no&id_file=83630&instance=softonic_es&type=PROGRAM&Expires=1430736381&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=KofsWX08cRgO2WFgcMOFNzWv9BIVYf4S0Y0McmImG~ZcrMlzSyRPXeu-Yk19GQvuCU2OzM7lTjeYy4C3ihIt81de8pcqwUqMFqjdKJ77o3UADW3NplCPbrUpy4JQV1CvNbVvViUBYbkcbnsVOjDvICx-YqZJJr6Y4nFU1Vfs9Bo_&filename=mseinstall_ES_443040.exe

http://gsf-cf.softonic.com/452/295/.../file?SD_used=0&channel=WEB&fdh=no&id_file=83630&instance=softonic_es&type=PROGRAM&Expires=1424334378&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=BvpRd2urXvy7jMgY0ohVeDHXpHwu8UqzT0uK0mdK4cRvP9waCbw1yB78-pF5PrbX2xU9t5nnB15sYwyu9Q~rCtmvPxG4OTsYKsdAGhgMOMIgh2sSUXC5tL2sfUvniF-BEbBBe8lbf3kXNqkhsKv1CRBa4QZtj5mxTasua8aSrNw_&filename=mseinstall_ES_443040.exe

http://go.microsoft.com/.../?LinkID=231277

http://gsf-cf.softonic.com/452/295/.../file?SD_used=0&channel=WEB&fdh=no&id_file=83630&instance=softonic_es&type=PROGRAM&Expires=1428828166&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=KHyFQepBALvTKjrfu1wJ1F-I0ajJvqh4X4h6HIzshL7aA9psOYw~0FFLhlndDykaYisWVRApCX1m6BmNkx6aoVDfbZdk-06CccKtPxewQABpAxhCaksRn~0zMjbhu4tx-kO~kl9eJ8U1cv089dhV50t5Gdq5DQqV9wIVmS0e-~c_&filename=mseinstall_ES_443040.exe

http://gsf-cf.softonic.com/452/295/.../file?SD_used=0&channel=WEB&fdh=no&id_file=83630&instance=softonic_es&type=PROGRAM&Expires=1427027007&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=Q1RsjiE4WzMbKmJqhxylzF-miyRA1ysX75uXCFYoWex5zSGtnE8G3DvtZsbjXeXnx4SuBWoSWGgL8im4AvZYYAdH7yVuFdIQyAHlwyr8E2MEG~Xi77dbB5CoTPrA4KAaBFxYEeve5u0nNAQtz59tVhROyOJV8~Z0cSAuymVpYdY_&filename=mseinstall_ES_443040.exe

http://global-shared-files-l3.softonic.com/452/295/.../file?nvb=20150119185446&nva=20150120065546&token=011653bf1c5844a72f886&SD_used=0&channel=WEB&fdh=no&id_file=83630&instance=softonic_es&type=PROGRAM&filename=mseinstall_ES_443040.exe

http://gsf-cf.softonic.com/452/295/.../file?SD_used=0&channel=WEB&fdh=no&id_file=93641&instance=softonic_es&type=PROGRAM&Expires=1428113560&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=iSPpIhFe88tMC46RRd~GVCZO1XZxNWVhUqw-UNw7sa7JBF470FeE1PSsvHL3Ciz5cqUonswJT3ePqiFXyWWRifS1YOnEj~L4wPfUOY52IwcX9CdNt-agk7Zj5zaHupkPitAiqIM5QF-UqkgePEyd4z4~cyY3I0Po76kux6b4t0s_&filename=mseinstall_ES_443040.exe

http://gsf-cf.softonic.com/452/295/.../file?SD_used=0&channel=WEB&fdh=no&id_file=83630&instance=softonic_es&type=PROGRAM&Expires=1424165081&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=C30p8H77580jncyBP3PygmPyPXL0wYdt9UbGgCUYYPtbBfNQLR5cVvIb5Q6bg-v6g9QMh~lOX5cZw9ObYYpNialmLWLPIaZmXBPQAH7v8qO2ACj8i8XCNVu2GWR1zVODfSasYJEACP3wNnDMy4NOIxMaTHqpmiDW8lehqYtm83M_&filename=mseinstall_ES_443040.exe

Latest 30 of 35 download URLs