SoneraAvustaja.exe

Sonera Avustaja

TeliaSonera AB

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘Sonera Avustaja 5.0’.
Publisher:
TeliaSonera AB  (signed and verified)

Product:
Sonera Avustaja

Version:
5, 0, 0, 0

MD5:
0bb489eb8052c07cfbf0259cb12523dd

SHA-1:
c84e508b147d69e5c27ad48e5808578e12f5e725

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 11:27:54 AM UTC  (today)

File size:
1.7 MB (1,763,104 bytes)

Product version:
5, 0, 0, 0

Copyright:
Copyright (C) 2013 TeliaSonera Finland Oyj

Original file name:
SoneraAvustaja.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\sonera avustaja\client\soneraavustaja.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
9/23/2010 3:00:00 AM

Valid to:
10/31/2013 1:59:59 AM

Subject:
CN=TeliaSonera AB, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=TeliaSonera AB, L=Sundsvall, S=Medelpad, C=SE

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
4D26DFA12F0CE31991B2A2EF19F24C3A

File PE Metadata
Compilation timestamp:
6/28/2013 2:50:32 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:ZWNoNDwbmy/19RBHed5aFTXYkgt3UznkUJt94i:ZkCqR8ALYkgbUJj4i

Entry address:
0x1E8C0

Entry point:
E8, 23, 04, 00, 00, E9, 37, FD, FF, FF, 8B, FF, 55, 8B, EC, FF, 75, 14, FF, 75, 10, FF, 75, 0C, FF, 75, 08, 68, 36, E3, 41, 00, 68, 4C, 60, 45, 00, E8, 94, 04, 00, 00, 83, C4, 18, 5D, C3, CC, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 0F, 03, C1, 1B, C9, 0B, C1, 59, E9, 8A, 04, 00, 00, 51, 8D, 4C, 24, 08, 2B, C8, 83, E1, 07, 03, C1, 1B, C9, 0B, C1, 59, E9, 74, 04, 00, 00, FF, 25, A0, 42, 44, 00, FF, 25, 9C, 42, 44, 00, CC, CC, CC, CC, CC, CC, CC, CC, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, F8, 7A, 45, 00...
 
[+]

Code size:
264.5 KB (270,848 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Sonera Avustaja 5.0

Command:
"C:\Program Files\sonera avustaja\client\soneraavustaja.exe" \trayonly


Scan SoneraAvustaja.exe - Powered by Reason Core Security