neroinst.exe

Nero Self Extractor

Nero AG

This is a setup program which is used to install the application. This is installed with multiple programs including Nero 2014 Content Pack. The file has been seen being downloaded from www.nero.com and multiple other hosts.
Publisher:
Nero AG  (signed and verified)

Product:
Nero Self Extractor

Version:
12.0.3.0

MD5:
32e26a5c7b6601c4dd861ebdbfd5b8c0

SHA-1:
e856754a6de5c2f361f1e22002213f95243f0b02

SHA-256:
774177d602bc8e16b17fa2df79a1b03f99a3273a3404ca2852d73ee76d5c04fd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/24/2024 12:36:49 PM UTC  (today)

File size:
763.2 MB (800,265,168 bytes)

Product version:
12.0.3.0

Copyright:
Copyright 2011 Nero AG and its licensors

Original file name:
NeroSFX.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\neroinst.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/22/2012 2:00:00 AM

Valid to:
6/22/2015 1:59:59 AM

Subject:
CN=Nero AG, OU=LEGAL DEPARTMENT, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Nero AG, L=Karlsbad, S=Baden Wuerttemberg, C=DE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3F5F2725B11E258A905707175244664A

File PE Metadata
Compilation timestamp:
5/15/2012 10:35:37 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12582912:x/Hbgzq9Kf5l4e5R0KN4TDGw6AzO9dgrWCoQ3ldlOrTcOkLCO9jekoCryoS/ZNr1:x/7NYse5OKuv5pzAmac1dAncmL2JS/DZ

Entry address:
0x121E37

Entry point:
E8, 6C, 9F, 00, 00, E9, 89, FE, FF, FF, 3B, 0D, 90, 15, 5B, 00, 75, 02, F3, C3, E9, F3, 9F, 00, 00, 8B, FF, 51, C7, 01, 2C, 13, 58, 00, E8, EB, A0, 00, 00, 59, C3, 8B, FF, 55, 8B, EC, 56, 8B, F1, E8, E3, FF, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, CF, D1, F0, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 83, C1, 09, 51, 83, C0, 09, 50, E8, 2A, A1, 00, 00, F7, D8, 59, 1B, C0, 59, 40, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 83, EC, 20, 53, 57, 33, DB, 6A, 07, 33, C0, 59, 8D, 7D, E4, 89, 5D...
 
[+]

Code size:
1.3 MB (1,393,152 bytes)

The file neroinst.exe has been discovered within the following programs.

MyHarmony  by Logitech Inc.
3% remove it
Nero 2014  by Nero AG
Publisher's description - “Nero 2014 is the ultimate standard in multimedia software, allowing you to manage, create, convert, play, and burn your movies, music and photos for the best entertainment experience at home or on the go.”
www.nero.com/eng/products/nero/free-trial-download.php
9% remove it
www.nero.com
About 5% of users remove it
 
Powered by Should I Remove It?

The file neroinst.exe has been seen being distributed by the following 20 URLs.

http://www.nero.com/link.php?la=es-ES&to=111061057&oe=524288&gen_id=11&sogen_id=15&pi=32064&pg=1028&ai=63&ma=95

Scan neroinst.exe - Powered by Reason Core Security