272wntpl_tcm3-28623.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.oki.pl.
MD5:
d8ca1b938dd5d16d14235c210aa0c3b7

SHA-1:
6e14dd2b5e467b1948b36d1bb79bbabcd66555a1

SHA-256:
8f119606f8cfdda7ffaabddea6356cf9f40a630f1ae80bf04edee8bf4c04722d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 3:45:56 PM UTC  (today)

File size:
781.6 KB (800,408 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\272wntpl_tcm3-28623.exe

File PE Metadata
OS version:
270.16544

OS bitness:
Win64

Subsystem:
Native (none required)

Linker version:
3.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:v3t7TsQblMc9otrtMHpj/R7CzdLnrT+jDG34IL:PLiIHpZsdZ3jL

Entry address:
0xA4009C

Entry point:
4D, 5A, 01, 01, 01, 00, 01, 00, 05, 00, 00, 00, FF, FF, 00, 00, 14, 00, 00, 00, 00, 00, 0A, 00, 40, 00, 00, 00, 01, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 10, 01, 00, 00, 04, 00, 0A, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 54, 68, 69, 73, 20, 69, 73, 20, 61, 20, 57, 69, 6E, 64, 6F, 77...
 
[+]

Code size:
256 KB (262,147 bytes)

The file 272wntpl_tcm3-28623.exe has been seen being distributed by the following URL.

Scan 272wntpl_tcm3-28623.exe - Powered by Reason Core Security