16094f5.tmp

MD5:
59a0c7b6e4848ccdabcea0636efda02b

SHA-1:
30ef5c54b8bbc3487ea2b4c45cd11ea2932e4340

SHA-256:
a1495da3cf3db37bf105a12658636ff628fee7b73975b9200049af7747e60b1f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 1:45:29 AM UTC  (today)

File size:
3.6 KB (3,638 bytes)

Common path:
C:\users\{user}\appdata\local\temp\16094f5.tmp

File PE Metadata
OS bitness:
Win16

Linker version:
1.0

CTPH (ssdeep):
6:NXulKltegZ//OekukCS4kdxpHIWvUkt/ctmnzteghFnUtC+i/T2MWFetk/m+:NaKXe2m5CREDssfnxeo/2XUKu+

Entry address:
0x200000

Entry point:
00, 00, 01, 00, 02, 00, 20, 20, 00, 00, 01, 00, 08, 00, A8, 08, 00, 00, 26, 00, 00, 00, 10, 10, 00, 00, 01, 00, 08, 00, 68, 05, 00, 00, CE, 08, 00, 00, 28, 00, 00, 00, 20, 00, 00, 00, 40, 00, 00, 00, 01, 00, 08, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 02, 66, FE, 00, 82, B2, FE, 00, CE, E2, FE, 00, 5A, 9E, FE, 00, BE, DA, FE, 00, EE, F6, FE, 0E, 22, 7A, FE, 0E, 9E, C6, FE, 00, 12, 72, FE, 00, 8E, BE, FE, 00, DE, EE, FE, 00, 72, AA, FE, 00, FE, FE...
 
[+]

Entropy:
1.2843

Code size:
86.5 MB (90,701,832 bytes)

The file 16094f5.tmp has been seen being distributed by the following URL.

Scan 16094f5.tmp - Powered by Reason Core Security