nuget_forpsget.exe

NuGet

Microsoft Corporation

Publisher:
Microsoft Corporation  (signed and verified)

Product:
NuGet

Version:
2.8.50506.491

MD5:
16c6835c572b933863cdd4116cefecda

SHA-1:
7469c905e04001f8250137d2da57bbc7bec2d358

SHA-256:
b0876dbc8659dc6ec77c56baa934d1800795d164173b4a644c3106b527587443

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)
Whitelisted  (by digital signature)

Analysis date:
11/23/2024 7:45:37 PM UTC  (today)

File size:
1.6 MB (1,670,320 bytes)

Product version:
2.8.2

Copyright:
Copyright 2013 Microsoft. NuGet is made possible by the Outercurve Foundation's open source project.

Original file name:
NuGet.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\nuget_forpsget.exe

Digital Signature
Authority:
Microsoft Corporation

Valid from:
4/22/2014 2:39:00 AM

Valid to:
7/22/2015 2:39:00 AM

Subject:
CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Issuer:
CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Serial number:
33000000CA6CD5321235C4E1550001000000CA

File PE Metadata
Compilation timestamp:
5/6/2014 6:57:32 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:si0yB2lkc9PgWhlXEvdy5jjjjjjjjjjjjjUy/FS09wvqmpwfrWja5Y6i1cBBq8cv:1B2lIWr8YNhMq0dqJww+N9I2n+Sn

Entry address:
0x197502

Entry point:
FF, 25, 10, 75, 59, 00, 00, 00, 00, 00, 00, 00, 00, 00, E4, 74, 19, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.8444

Code size:
1.6 MB (1,660,416 bytes)

The file nuget_forpsget.exe has been seen being distributed by the following 2 URLs.