alpemix.exe

Alpemix

Teknopars Bilisim Teknolojileri San. ve Tic. Ltd. Sti.

This is a setup program which is used to install the application. The file has been seen being downloaded from indir.gezginler.net and multiple other hosts.
Publisher:
Teknopars  (signed by Teknopars Bilisim Teknolojileri San. ve Tic. Ltd. Sti.)

Product:
Alpemix

Version:
1.0.0.732

MD5:
68e6ac52827bd7d178b5ef7e90df111b

SHA-1:
040dce84b5625ebd8905c9e1ce4605e426b00870

SHA-256:
c4d1a628002f81fa0959b29722b7bc4ecbf17b52e3b5372b64edbd35a0056597

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/15/2024 12:29:44 PM UTC  (today)

Scan engine
Detection
Engine version

Qihoo 360 Security
QVM11.1.Malware.Gen
1.0.0.1120

File size:
833.2 KB (853,232 bytes)

Product version:
1.0.0.0

Copyright:
Teknopars 2015

Trademarks:
Alpemix

Original file name:
Alpemix

File type:
Executable application (Win32 EXE)

Language:
Turc (Turquie)

Common path:
C:\users\{user}\downloads\alpemix.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/14/2014 1:00:00 AM

Valid to:
11/13/2017 12:59:59 AM

Subject:
CN=Teknopars Bilisim Teknolojileri San. ve Tic. Ltd. Sti., O=Teknopars Bilisim Teknolojileri San. ve Tic. Ltd. Sti., L=Istanbul, S=Türkiye, C=TR

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0CDBDE77FAF52F44BFE5112A19F5C422

File PE Metadata
Compilation timestamp:
5/5/2016 10:45:29 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:VmsVIbdfHj8xXTT6VIClT/dQHRMPzyG+uluDtco/:XGRKXTWi0/dQCWGJ8Ko/

Entry address:
0x279F90

Entry point:
60, BE, 00, 00, 5C, 00, 8D, BE, 00, 10, E4, FF, C7, 87, D4, 24, 1F, 00, 6E, 42, 3B, C2, 57, 83, CD, FF, EB, 0E, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46...
 
[+]

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.22 (Delphi) stub

Code size:
748 KB (765,952 bytes)

The file alpemix.exe has been seen being distributed by the following 50 URLs.

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://l.facebook.com/l.php?u=http://www.alpemix.com/.../Alpemix.exe&h=tAQEoorE-

http://www.3tbilisim.com/yardim.exe

http://indir.gezginler.net/i/12866/.../

http://www.programlar.com/download.php?f=0Gm8qFM1cVN9s6T6GHJAO0n5E6T1c0n166b9sTI9sCnEWFE1cRdE04u9MDBBwAj1cEr8q6S8qFM9MFN8qN78q6S8qFMCyIz5kL3BwAj5kAi9M2TBwVFBwAiE0Ai9M2TBwEr9sN71cFN8qTJ8q6S8qFN3AFN8qN78q6S8KAi9sAiFY

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://www.tamindir.com/indir/MjAxNi0wNS0wNiAxMjoxMToyOQ==/alpemix/windows/.../

http://www.sayginbil.com/.../alpemix.exe

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

https://alpemix.com/.../Alpemix.exe

http://indir.gezginler.net/i/12866/.../

https://www.alpemix.com/.../Alpemix.exe

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://indir.gezginler.net/i/12866/.../

http://www.alpemix.com/site/.../Alpemix.exe

http://www.tamindir.com/indir/MjAxNi0wNi0xNiAwODozNzo1OQ==/alpemix-uzaktan-yardim/windows/.../

Latest 30 of 51 download URLs

Scan alpemix.exe - Powered by Reason Core Security