netgeargenie-install.exe

NETGEAR Genie

NETGEAR TAIWAN CO., LTD

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is installed with multiple programs including NETGEAR Genie. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
NETGEAR Inc.  (signed by NETGEAR TAIWAN CO., LTD)

Product:
NETGEAR Genie

Version:
${SVN_VERSION}

MD5:
75396138bb03af8508525cad1b2397e6

SHA-1:
300a5384f691aabc09531aae6acff2fa541f1963

SHA-256:
f44e353a6d05c90dc9b07745bc9b1cbf0fa36dfeda9e93e0b08bd844f22a3bc1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/1/2024 1:39:28 PM UTC  (today)

File size:
37.5 MB (39,316,824 bytes)

Product version:
2.3.1.57

Copyright:
Copyright NETGEAR Inc.

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\netgeargenie-install.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/3/2014 8:00:00 PM

Valid to:
9/27/2017 7:59:59 PM

Subject:
CN="NETGEAR TAIWAN CO., LTD", O="NETGEAR TAIWAN CO., LTD", L=Taipei, S=taiwan, C=TW

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2B19E686469E43523B21001A9E916831

File PE Metadata
Compilation timestamp:
2/24/2012 2:19:59 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
786432:0Wi0QxKinrZtCV9nzjsZ4Y7nJ8DXnZ1j6bgNODsAO+hYXbv:0Wi0QVrZtSnzgmY7S56bgUzOaYLv

Entry address:
0x39E3

Entry point:
81, EC, D4, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, D8, 91, 40, 00, 89, 6C, 24, 14, FF, 15, 30, 80, 40, 00, 68, 01, 80, 00, 00, FF, 15, B8, 80, 40, 00, 55, FF, 15, C0, 82, 40, 00, 6A, 08, A3, B8, 2E, 47, 00, E8, 37, 2A, 00, 00, 55, 68, B4, 02, 00, 00, A3, D0, 2D, 47, 00, 8D, 44, 24, 38, 50, 55, 68, 1C, 93, 40, 00, FF, 15, 84, 81, 40, 00, 68, 04, 93, 40, 00, 68, C0, AD, 46, 00, E8, 19, 27, 00, 00, FF, 15, B4, 80, 40, 00, 50, BF, A0, 30, 4C, 00, 57, E8, 07, 27, 00, 00...
 
[+]

Entropy:
7.9865

Packer / compiler:
Nullsoft install system v2.x

Code size:
28 KB (28,672 bytes)

The file netgeargenie-install.exe has been discovered within the following programs.

NETGEAR Genie  by NETGEAR Inc.
Publisher's description - “NETGEAR Genie is the easy App to manage and monitor your home NETGEAR routers. It provides easy access to cool features on your router: Wireless Settings, Network Map, Live Parental Controls, Guest Access, Traffic Metering, My Media, and more.”
www.netgear.com
12% remove it
www.Toolwiz.com
About 5% of users remove it
 
Powered by Should I Remove It?

The file netgeargenie-install.exe has been seen being distributed by the following 11 URLs.

http://dw.uptodown.com/dwn/xCUrU38LFEBccINAitwgMZRF9-n1Xile_AQV0crrCZeHT_25-pHPZRVr46cLHnBagWvGlzMzIZoJUX9DPLKKsEzPF2AyRGwwMjlFEjNiqTgYxXtnA-9cZM5HX0dSt7er/X1JDvYXDEy5Kug4ZR05nwP-YQ4u_sF5odMO9nJUPMQ4GXAx7DU8dNXGpXVyQPJkxzyJ3uhGb1vzu6zt5gHkL_bQg0XgwfEX1Q6WZHkWq4_i5tg6ASf2f92wAvQJoQLo3/s9l9wvQe6cikPXV1M7jJCAKYDXAiHz5r1AgZM7R7KvYUDBDFEdFi-paKJPfXMwe4ncnIpq3-uY1ImkoOHdUVlRBdmtEMeZ29T0XI8Dxn9A2RkORbkuUMQkL3AclboQPK/.../

http://dw.uptodown.com/dwn/jzKJxAs1NazUnyZ11RLtzok9BD_cU4TLjShupNmRQO2jiirEyNEOGu-QR24VL4EpDttBRnwDRsQcb2EthUl2Xb1T5-aQDNqX6ScyLKicMqNyFrg3dNlWESeZBAldjrDU/PMhqc7QF_AzAZo7MWP6D_KKj6jbHP_YEXOcWYuxhZgrZsur0uoqqY493tzBAKbgtgBQuF4jSDg9mawKOJehnGI9H3mxJVRByr9GvhQBNJj0bwVKWdTJFJ0O_KznDWPYL/nb1BBoiEnYoCvYbAK0Zq4-rIlL9r0ZPTHhD_3X2MrRJjuPR9KEH3A7ffiYjdqTvuQwWoPf_XIpPeJ4TrFViDh4QHG11hh62X6xFCxHuhPAFwu5ME_NX-ZgoWRDYC8pAf/.../

http://dw3.uptodown.com/dwn/tO420KZO_68GLUftpsHicQKpIgXgafRLEpAF7H1I_yQ-0oS8dpAiJo2-azHO5sy0uKPVkiaGd7EkN74U1ccFrNVNiRpyhHvEDnGJoA5-atsgDGhb5wIXqJ9Ut9JoON6Y/U4AaQqX3bLhZeXgs51aEoSoVnrhH-hjP_OBWjNAP1fG9Jyc6--LaA7OQfEJTbYji4JS8-LDN1Wi1wQM9V-AhrCYKA_yxPlN-nzBudcddcrKAVKfB9ShocHKDzi1pSsQs/.../netgear-genie-2-3-1-46-multi-win.exe

https://dw.uptodown.com/dwn/_gJqhUMtnDdg-sfefp_Fzttym-ZDTVorM0YENYyccT20eXwXqFzjUz_E0K9j7W8hgfgTVTec8DH_eVJoo5N0pdVPUCW94Wg6FdTeEyYxhkZA2HXsQTmKzVQOYlw7wygz/hAVMNS1MGWUDPdZs6T9tDpBuyBmrMGEzvo6O_GrDzfxiKF-V4E9Yd27cav9AL7XnjPhxr2L5yk_59jgUqFmNMxgll6goczvHPQtzaldsIFz45F-iLcOQ_QRX4JcnLkjl/uclyE8jqeK_PotYOwxgcknvGwNBrVPrw_EkiDtxO9g0dmueV3LxaGT3DMdjvyea-kgCYnU98FWSp_caByJuE_bG3Yyyy07nIJrRecBU9_Kwv0pwLqKGAKeIIPTIFZweh/.../

Scan netgeargenie-install.exe - Powered by Reason Core Security