2.exe

Adit Testdesk

Adit Software

This is a setup program which is used to install the application. The file has been seen being downloaded from rghost.ru.
Publisher:
Adit Software

Product:
Adit Testdesk

Description:
Adit Testdesk Embedded Tester

Version:
2.50.2276

MD5:
09f00cf22bbdde0379e4784deadea69e

SHA-1:
79c630670a29e6203dbb197bd80fc51cadfb3415

SHA-256:
5de5f36c93cab922800e2d96d961169f5af31238e1e02a51e056ae8101eb2db2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 4:46:30 PM UTC  (today)

File size:
6.9 MB (7,202,269 bytes)

Product version:
2.50.2276

Copyright:
Copyright ©2005-09 Adit Software

Original file name:
Testviewer.c32

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\2.exe

File PE Metadata
Compilation timestamp:
5/21/2012 11:58:04 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:bfRjEy/Rs2TxLPFTt9d5p2p6+xWM4oKExqwRHdLHgXtKyhwaH+lohGbe3xI6JU:bZjpVtbp27xWroKE4q9Hwty++giOW6m

Entry address:
0xF8F000

Entry point:
EB, 05, 2B, B6, 9F, FB, C5, 50, EB, 04, 69, C3, 50, AA, E8, 19, 00, 00, 00, EB, 04, 67, FF, 91, B1, EB, 03, BB, 28, C6, 33, C0, EB, 01, E0, 71, 64, EB, 05, FE, 8F, E0, DC, F0, EB, 03, A3, 34, 1F, B8, 3A, 48, EE, F6, EB, 03, BF, 09, 9E, EB, 03, BB, 68, 0D, 05, C6, B7, 11, 09, EB, 05, F7, 09, 72, 8C, 40, 75, 3B, EB, 03, BB, 1F, 16, 64, FF, 30, EB, 05, 8A, AB, 99, F9, 0B, 64, 89, 20, EB, 01, 13, EB, 04, BE, 81, 89, 96, 8B, 10, EB, 03, 35, 70, AD, 64, 8F, 00, EB, 03, 19, A0, C6, 83, C4, 04, EB, 03, A1, E6, 03...
 
[+]

Code size:
9.4 MB (9,827,840 bytes)

The file 2.exe has been seen being distributed by the following URL.

Scan 2.exe - Powered by Reason Core Security