scudownloader_af_pi.exe

SystemCheckup

iolo technologies, LLC

This is a setup program which is used to install the application. The file has been seen being downloaded from software.microapp.com and multiple other hosts.
Publisher:
iolo technologies, LLC  (signed and verified)

Product:
SystemCheckup®

Description:
ecom+avanquest+avanquest+scu_iolo_af_pi_fr+fr+false

Version:
4.0.0.152

MD5:
a92750634a02b7ac1c4cbd6d193e3bcc

SHA-1:
ead51f64ff6094969a08a82d0b66c7acfe27b888

SHA-256:
b050f99bf400d04d0d07c0edbd2f22414f4a4f04c9f6aa0812b46db4f8c7c290

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 6:41:14 PM UTC  (today)

File size:
17.3 MB (18,131,880 bytes)

Product version:
4.0.0.152

Copyright:
Copyright 1998-2016 iolo technologies, LLC. All rights reserved.

Trademarks:
SystemCheckup is a registered trademark of iolo technologies, LLC

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\scudownloader_af_pi.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
8/22/2015 2:00:00 AM

Valid to:
11/21/2016 12:59:59 AM

Subject:
CN="iolo technologies, LLC", O="iolo technologies, LLC", L=Pasadena, S=California, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
20CF598F8F36E39815057E8845D7ACB8

File PE Metadata
Compilation timestamp:
1/8/2016 7:39:47 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:b413w9Dh8O1QzLGhM759Xj4Qok2I9Cpy+Du7xxVSRL3TIMSqndkc48:b49wVi/92k2I9CpyquxSRTTRSqCm

Entry address:
0xD865C

Entry point:
55, 8B, EC, 83, C4, E8, 53, 56, 57, 33, C0, 89, 45, E8, 89, 45, EC, B8, 10, 3C, 4D, 00, E8, C5, 57, F3, FF, 33, C0, 55, 68, 31, 87, 4D, 00, 64, FF, 30, 64, 89, 20, 33, C0, 55, 68, CB, 86, 4D, 00, 64, FF, 30, 64, 89, 20, A1, 48, FC, 4D, 00, E8, 9F, A8, FF, FF, E8, AA, B2, FF, FF, A1, 48, FC, 4D, 00, E8, C4, AB, FF, FF, 8D, 45, EC, E8, 00, B3, FF, FF, 8B, 55, EC, A1, 48, FC, 4D, 00, E8, 8B, AF, FF, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 4B, E9, C4, 02, F3, FF, 01, 00, 00, 00, D8, 88, 41, 00, DC, 86, 4D, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
862 KB (882,688 bytes)

The file scudownloader_af_pi.exe has been seen being distributed by the following 4 URLs.

http://software.microapp.com/HP?b=ZyWx4h2iAOFSlkXQQFUzI9idX5T2oPnoIfkutasYOLMmWpPeujDZJuWBphm0U0DE&c=m_6AOa3XopCgCrkA4EIYbg

Scan scudownloader_af_pi.exe - Powered by Reason Core Security