promoware_setup.tmp

IN MEDIA KG

Publisher:
IN MEDIA KG  (signed and verified)

Description:
Setup/Uninstall

Version:
51.52.0.0

MD5:
3598a3d08b6fea449644f4c1dec39c90

SHA-1:
0f0fda2d324d8f5922d4366aef2e4421b19e36b9

SHA-256:
801ed1177540530bc7a40e7f2bb459e5763b74f7d9b13a4e498d1aa2c653878e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/28/2024 6:40:20 AM UTC  (today)

File size:
720.1 KB (737,384 bytes)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\promoware_setup.tmp

Digital Signature
Signed by:

Authority:
thawte, Inc.

Valid from:
7/7/2016 2:00:00 AM

Valid to:
7/8/2018 1:59:59 AM

Subject:
CN=IN MEDIA KG, O=IN MEDIA KG, L=Sonthofen, S=Bayern, C=DE

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
74770606874AFEB1CD4C1219CF9AE2EC

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x9A490

Entry point:
55, 8B, EC, 83, C4, F4, 53, 56, 57, E8, A6, 8E, F6, FF, E8, FD, B1, F6, FF, E8, 4C, BF, F6, FF, E8, 67, C3, F6, FF, E8, EA, F8, F6, FF, E8, FD, 66, F7, FF, E8, 60, 69, F7, FF, E8, B7, 88, F7, FF, E8, CA, EF, F7, FF, E8, C5, AE, F8, FF, E8, D8, 56, F9, FF, E8, BF, 69, F9, FF, E8, 42, 58, FB, FF, E8, 09, 5D, FB, FF, E8, 74, 66, FB, FF, E8, 53, 7A, FB, FF, E8, 46, 94, FB, FF, E8, 5D, D3, FB, FF, E8, BC, E2, FB, FF, E8, CF, F5, FB, FF, E8, 12, AD, FC, FF, E8, A9, 35, FD, FF, E8, 5C, F9, FD, FF, E8, 63, AE, FE...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
614 KB (628,736 bytes)

Scan promoware_setup.tmp - Powered by Reason Core Security