prodsetup.exe

ProdSetup

VTech Electronics North America, LLC

This is a setup and installation application.
Publisher:
VTech  (signed by VTech Electronics North America, LLC)

Product:
ProdSetup

Version:
1.3.4.2

MD5:
c02757387cd2e3f22ac9811184264971

SHA-1:
6795fd1ef532231d8d9fa843441b12c0d60411a7

SHA-256:
2f4e7d7510f73a79a497a6e5f56d13d3399db78d37c0df839feae60e35f3c173

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 11:24:23 PM UTC  (a few moments ago)

File size:
7.8 MB (8,197,808 bytes)

Product version:
1.3.4.2

Copyright:
Copyright (C) 2010

Original file name:
ProdSetup

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\prodsetup.exe

Digital Signature
Authority:
WoSign CA Limited

Valid from:
4/18/2016 9:29:56 PM

Valid to:
1/18/2017 8:29:56 PM

Subject:
CN="VTech Electronics North America, LLC", O="VTech Electronics North America, LLC", L=Arlington Heights, S=Illinois, C=US

Issuer:
CN=WoSign Class 3 Code Signing CA G2, O=WoSign CA Limited, C=CN

Serial number:
17F5AD8B27F010FEA60288A80814452A

File PE Metadata
Compilation timestamp:
6/20/2013 12:08:12 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:TTqvuhxxKFdu9ZhhmAad1gZX+mjazJhD99P9:vqGlKFdu9rad1gV+lXn1

Entry address:
0x339C77

Entry point:
E8, 79, AA, 00, 00, E9, 78, FE, FF, FF, B8, 43, 52, 74, 00, A3, 5C, C3, 8C, 00, C7, 05, 60, C3, 8C, 00, 2A, 49, 74, 00, C7, 05, 64, C3, 8C, 00, DE, 48, 74, 00, C7, 05, 68, C3, 8C, 00, 17, 49, 74, 00, C7, 05, 6C, C3, 8C, 00, 80, 48, 74, 00, A3, 70, C3, 8C, 00, C7, 05, 74, C3, 8C, 00, BB, 51, 74, 00, C7, 05, 78, C3, 8C, 00, 9C, 48, 74, 00, C7, 05, 7C, C3, 8C, 00, FE, 47, 74, 00, C7, 05, 80, C3, 8C, 00, 8B, 47, 74, 00, C3, 8B, FF, 55, 8B, EC, E8, 96, FF, FF, FF, E8, 00, B6, 00, 00, 83, 7D, 08, 00, A3, 80, 08...
 
[+]

Entropy:
7.3074

Code size:
3.5 MB (3,720,704 bytes)

Internet Explorer Menu Extension
Name:
&Enviar a OneNote


Scan prodsetup.exe - Powered by Reason Core Security