tuneuputilities2014_en-us.exe

TuneUp Utilities 2014

AVG Netherlands B.V.

This is a setup program which is used to install the application. The file has been seen being downloaded from www.downloadcrew.com and multiple other hosts.
Publisher:
TuneUp Software  (signed by AVG Netherlands B.V.)

Product:
TuneUp Utilities 2014

Version:
14.0.1000.88

MD5:
c4d9c534d96e4d5eb8daddcd4c0fcb43

SHA-1:
75fdc0de5dcedd2a9b94d06bf7b9b44a979d50f5

SHA-256:
68e5e16864a08a32bd5b8825e58681cd1ea5808c201b4be02ed5c37d18d5edf4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 6:07:09 AM UTC  (today)

File size:
31.3 MB (32,773,544 bytes)

Product version:
14.0.1000.88

Copyright:
Copyright © AVG Netherlands B. V. 2011

Trademarks:
TuneUp Utilities™

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\autoplay\docs\tuneuputilities2014_en-us.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/21/2012 1:00:00 AM

Valid to:
7/22/2015 12:59:59 AM

Subject:
CN=AVG Netherlands B.V., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=AVG Netherlands B.V., L=Amsterdam, S=North Holland, C=NL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
22152145E92598871206D263FD928436

File PE Metadata
Compilation timestamp:
8/29/2013 11:10:26 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
786432:AjGnutCQcYuL3Mt3jXbW19YCA88q4dHUMPpy2qxWmuC:AkusXYuotzur5mPy2iHuC

Entry address:
0x2CDF1

Entry point:
E8, BF, C0, 00, 00, E9, 78, FE, FF, FF, CC, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B, 4C, 24, 04, 2B, C1, C3, 8D, 41, FE, 8B...
 
[+]

Entropy:
7.9441  (probably packed)

Code size:
289.5 KB (296,448 bytes)

The file tuneuputilities2014_en-us.exe has been seen being distributed by the following 11 URLs.

http://www.downloadcrew.com/?act=software.download&id=31385&t=1422256664&c=08eab6e7671334b19499a8cf6483902df8d7d033

http://www.downloadcrew.com/?act=software.download&id=31385&t=1461524581&c=8a0b35c92c4a065a2b80f9c4a28e6a0793b8b263

http://downloadcrew.com/?act=software.download&id=31385&t=1426076235&c=ded04d52307359115bd420459526865614d393aa

http://gsf-cf.softonic.com/75f/dc0/.../file?SD_used=0&channel=WEB&fdh=yes&id_file=28273&instance=softonic_en&type=PROGRAM&Expires=1423771153&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&Signature=J9nKZUeBXY46s3wPkUJY8ysOPrBfFQm0Md0Syb1kbTvWecGpFdqZLe7pvjA6K8Z1HM8M7YhAwKvCZIMNJaxyVW54nKAIXGrdBALRRR9XlUQfYl0xEl84UKQFNAG4Qptz5XH0FXKwJzP0g-DrTvo5msHYg3cKo6ta1uc0b36Dw-8_&filename=TuneUpUtilities2014_en-US.exe

http://219.239.26.18/download/51162702/74323083/1/exe/129/7/.../TuneUpUtilities2014_en-US.exe

Scan tuneuputilities2014_en-us.exe - Powered by Reason Core Security