25r4982.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from public.dhe.ibm.com.
MD5:
713236d54f41a6fbe5f1b3e6635b0872

SHA-1:
a5d3f6be2117db1a4c05710818b9f329133af5fa

SHA-256:
c9be19401eeb947150e6412389a840978b45ded79900b05084b3971e5385fc94

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 5:15:11 AM UTC  (today)

File size:
544.7 KB (557,737 bytes)

File type:
Executable application (Win16 EXE)

Common path:
C:\users\{user}\downloads\25r4982.exe

File PE Metadata
Compilation timestamp:
1/3/2044 7:44:29 PM

OS version:
15.6005

OS bitness:
Win16

Linker version:
2.0

CTPH (ssdeep):
12288:/yYe3OyEzAIPYZIG9z++4Pa/D/nV+btFdJuueCroH+:83wzvY5z++40V+btnJuZC9

Entry address:
0x6E0068

Entry point:
4D, 5A, FC, 01, 1E, 00, 04, 00, 20, 00, 00, 00, FF, FF, 56, 0A, 00, 04, 45, 0B, 10, 00, 00, 00, 40, 00, 00, 00, 01, 00, 11, 00, 00, 00, 00, 00, 00, 00, 7B, 00, 00, 00, C8, 0B, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 1C, 00, 00, 11, 00, 00, 00, 47, 00, 00, 00, 7B, 00, 00, 00, C8, 0B, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Code size:
192 KB (196,610 bytes)

The file 25r4982.exe has been seen being distributed by the following URL.

Scan 25r4982.exe - Powered by Reason Core Security