taforoeloader.exe

NextUp Technologies, LLC

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘TAForOE Loader’. This is installed with TextAloud.
Publisher:
NextUp.com  (signed by NextUp Technologies, LLC)

Description:
TextAloud Toolbar Loader for Outlook Express / Windows Mail

Version:
3.0.3.0

MD5:
eae275f6a1d86c9754a36569dce67d58

SHA-1:
8040408654f536ecc32c406c29da07f27a7c4c53

SHA-256:
d0e36b139223efe0f6f876d60905bc7b98600ed94f93f7e76ab9bc8a8fa3f539

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 1:57:34 PM UTC  (today)

File size:
490.3 KB (502,096 bytes)

Product version:
3.0.0.0

File type:
Executable application (Win32 EXE)

Language:
Russian (Russia)

Common path:
C:\Program Files\textaloud\taforoeloader.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/13/2010 6:00:00 PM

Valid to:
12/10/2011 5:59:59 PM

Subject:
CN="NextUp Technologies, LLC", OU=NextUp.com, OU=Digital ID Class 3 - Microsoft Software Validation v2, O="NextUp Technologies, LLC", L=Clemmons, S=North Carolina, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
16FD86DAED4ED9A93F4F1DB331AFEFCB

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:wNT+KPgyvHuIAc0tW3tpBbHS1Yioi/A+M3HNnfFYGSntpxPHttL+qXoycVlW:yT+KPRvHNYSGqioDHFF05nJXoyczW

Entry address:
0x5E2A0

Entry point:
55, 8B, EC, 83, C4, E0, 53, 33, C0, 89, 45, E4, 89, 45, E0, 89, 45, EC, 89, 45, E8, B8, F0, DE, 45, 00, E8, D1, 80, FA, FF, 33, C0, 55, 68, E6, E3, 45, 00, 64, FF, 30, 64, 89, 20, 68, F4, E3, 45, 00, E8, F9, 8A, FA, FF, 8B, 15, A8, 02, 46, 00, 89, 02, 68, 0C, E4, 45, 00, 68, 1C, E4, 45, 00, E8, 22, 88, FA, FF, 8B, D8, 85, DB, 76, 5B, 8D, 45, E8, 8B, 15, 3C, 02, 46, 00, 8B, 12, E8, D0, 5E, FA, FF, 8B, 45, E8, 8D, 55, EC, E8, 81, 9F, FA, FF, 8B, 55, EC, B8, 30, E4, 45, 00, E8, C4, 62, FA, FF, 85, C0, 7E, 16...
 
[+]

Entropy:
6.4855

Developed / compiled with:
Microsoft Visual C++

Code size:
373.5 KB (382,464 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
TAForOE Loader

Command:
"C:\Program Files\textaloud\taforoeloader.exe" \background


The file taforoeloader.exe has been discovered within the following program.

TextAloud  by NextUp Technologies
Publisher's description - “TextAloud is the leading text to speech program, available with exciting premium voices (including several languages) from ATT Natural Voices, Acapela Group, and Nuance for the best in computer speech for your PC. TextAloud uses voice synthesis to convert text into spoken audio.”
www.nextup.com/textaloud
19% remove it
 
Powered by Should I Remove It?

Scan taforoeloader.exe - Powered by Reason Core Security