psafeinternetsetup.exe

PSafe Internet

PSafe Tecnologia S.A.

This is a self-extracting archive and installer. The file has been seen being downloaded from static.psafe.net.
Publisher:
PSafe Tecnologia S.A.  (signed and verified)

Product:
PSafe Internet

Version:
7.5.1.150

MD5:
89b6cba623a44e09f32b5a66e9bbb851

SHA-1:
37700a79c76ebc55b6025f9d02d4c502c928c235

SHA-256:
adeeefaf1ef3338748e06288d2bce5e758a7b5f4cb135dcb2544236b35803dcd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 2:37:55 PM UTC  (today)

File size:
42.9 MB (44,983,136 bytes)

Product version:
7.5.1.150

Copyright:
(C) PSafe Tecnologia S.A.

File type:
Executable application (Win32 EXE)

Language:
Brazilian Portuguese

Common path:
C:\users\{user}\downloads\psafeinternetsetup.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
1/20/2013 10:00:00 PM

Valid to:
1/26/2015 10:00:00 AM

Subject:
CN=PSafe Tecnologia S.A., O=PSafe Tecnologia S.A., L=Rio de Janeiro, S=Rio de Janeiro, C=BR

Issuer:
CN=DigiCert Assured ID Code Signing CA-1, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
07F79AA9335B794D70779F719061AFF2

File PE Metadata
Compilation timestamp:
5/29/2014 10:41:00 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
786432:S49pkvOWeuMokfLQpEf0UycjaO2PsJiqW29QmwPcLdEjpqNoDOe985g7QSdRB:3Wi0cQppcj12P6NW29Qmwuyjp73C5g77

Entry address:
0x8CC9

Entry point:
E8, BB, 54, 00, 00, E9, 89, FE, FF, FF, 83, 25, 28, 7E, 41, 00, 00, C3, 3B, 0D, 8C, 50, 41, 00, 75, 02, F3, C3, E9, 3A, 55, 00, 00, 8B, FF, 55, 8B, EC, 83, 7D, 08, 00, 74, 2D, FF, 75, 08, 6A, 00, FF, 35, B0, 67, 41, 00, FF, 15, 30, 10, 40, 00, 85, C0, 75, 18, 56, E8, CE, 13, 00, 00, 8B, F0, FF, 15, 90, 10, 40, 00, 50, E8, 7E, 13, 00, 00, 59, 89, 06, 5E, 5D, C3, 57, 8B, C6, 83, E0, 0F, 85, C0, 0F, 85, C1, 00, 00, 00, 8B, D1, 83, E1, 7F, C1, EA, 07, 74, 65, EB, 06, 8D, 9B, 00, 00, 00, 00, 66, 0F, 6F, 06, 66...
 
[+]

Code size:
76.5 KB (78,336 bytes)

The file psafeinternetsetup.exe has been seen being distributed by the following URL.

Scan psafeinternetsetup.exe - Powered by Reason Core Security