Android Control.exe

WindowsApplication1

This is a setup program which is used to install the application. The file has been seen being downloaded from fs1.d-h.st and multiple other hosts.
Product:
WindowsApplication1

Version:
1.0.0.0

MD5:
3f9dac26988877127ce7e168baac86f4

SHA-1:
52b37dc86715f73fce35d4c37093acc3876760f4

SHA-256:
7f13b87c80070aabad17833f94e4a3d2a9b046a72eafa8014f971f211f908def

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/25/2024 12:54:12 AM UTC  (today)

Scan engine
Detection
Engine version

AegisLab AV Signature
DangerousObject.Multi.Gen
2.1.4+

File size:
2.9 MB (3,078,656 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2014

Original file name:
Android Control.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\s4 files\android control.exe

File PE Metadata
Compilation timestamp:
7/4/2014 1:59:30 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:9a8lPktqPGaTJiI6HHKdKhfDvDXpmTQ19DgAn79UrFee+6+:9a8lPQgEHKdervDXp/9DgA7EUe1

Entry address:
0x2EE27E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.6828

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
2.9 MB (3,064,832 bytes)

The file Android Control.exe has been seen being distributed by the following 5 URLs.

Scan Android Control.exe - Powered by Reason Core Security