system_checkup_aqde_em.exe

SystemCheckup

iolo technologies, LLC

This is a setup program which is used to install the application. The file has been seen being downloaded from webtools.avanquest.com and multiple other hosts.
Publisher:
iolo technologies, LLC  (signed and verified)

Product:
SystemCheckup®

Description:
ecom+avanquest+avanquest+scanem+de+false

Version:
4.0.0.157

MD5:
00543398f6a2c01d7c0dc434a1d455b0

SHA-1:
ea1c18f5262cfe510bf6a706acf8e9f1eec8982f

SHA-256:
966ba28e0aca8a5088db061f925b3ca77ff91209990168689450def57efa7c9b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 2:03:15 AM UTC  (today)

File size:
17.6 MB (18,452,144 bytes)

Product version:
4.0.0.157

Copyright:
Copyright 1998-2016 iolo technologies, LLC. All rights reserved.

Trademarks:
SystemCheckup is a registered trademark of iolo technologies, LLC

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\system_checkup_aqde_em.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
8/22/2015 2:00:00 AM

Valid to:
11/21/2016 12:59:59 AM

Subject:
CN="iolo technologies, LLC", O="iolo technologies, LLC", L=Pasadena, S=California, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
20CF598F8F36E39815057E8845D7ACB8

File PE Metadata
Compilation timestamp:
1/8/2016 7:39:47 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:A41pANuvjWgQ9dHYFMI5dX84QoPiFHGz7hOvE2Bi9wjoDNaXk4ZwDvkU4eT:A4XAzXIdfPGGz7o82Y4oDNaXHwT

Entry address:
0xD865C

Entry point:
55, 8B, EC, 83, C4, E8, 53, 56, 57, 33, C0, 89, 45, E8, 89, 45, EC, B8, 10, 3C, 4D, 00, E8, C5, 57, F3, FF, 33, C0, 55, 68, 31, 87, 4D, 00, 64, FF, 30, 64, 89, 20, 33, C0, 55, 68, CB, 86, 4D, 00, 64, FF, 30, 64, 89, 20, A1, 48, FC, 4D, 00, E8, 9F, A8, FF, FF, E8, AA, B2, FF, FF, A1, 48, FC, 4D, 00, E8, C4, AB, FF, FF, 8D, 45, EC, E8, 00, B3, FF, FF, 8B, 55, EC, A1, 48, FC, 4D, 00, E8, 8B, AF, FF, FF, 33, C0, 5A, 59, 59, 64, 89, 10, EB, 4B, E9, C4, 02, F3, FF, 01, 00, 00, 00, D8, 88, 41, 00, DC, 86, 4D, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
862 KB (882,688 bytes)

The file system_checkup_aqde_em.exe has been seen being distributed by the following 3 URLs.

http://webtools.avanquest.com/download.cfm?tracking=AQ_DE_FUL_IOLO_HYBRID_CRS_1016_ADHOC&go=http://fastcdn.avanquest.com/System_Mechanic/.../System_Checkup_AQDE_EM.exe

http://software.avanquest.com/HP?b=zjvadNX25uZEX1rJCmg9fGbkuAwZ413u-0cpwXCwG4YN69x9--mdvvduAfkxzyQE&c=ATqz6K9S2ZNOii8m6dwpPQ

Scan system_checkup_aqde_em.exe - Powered by Reason Core Security