app-upgrade.exe

Version:
1.0.0.45

MD5:
9d3cb3a78a8c9303f69eb8c65207c9eb

SHA-1:
c7889d3ef93ea02058b3871ca4a445acea0d3743

SHA-256:
4f029c6d461b4a8a058e4572717ed18a8fd716f65947c822be54722d5c9f75ae

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/30/2024 6:45:48 PM UTC  (today)

File size:
1.9 MB (1,979,904 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\users\{user}\downloads\app-upgrade.exe

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:tZmpHfWsCsLbdUJuvmuJk2BnfCNNOvtKzzuvkWmArsUKCxu5kmg/vdXHqPvZA2TL:rmNcUv5fCNg32CmcXoxA2TQ

Entry address:
0x1A09C0

Entry point:
55, 8B, EC, 83, C4, F0, B8, A8, 03, 5A, 00, E8, 90, 62, E6, FF, A1, 08, 8A, 5A, 00, 8B, 00, E8, 48, 77, EF, FF, 8B, 0D, F0, 86, 5A, 00, A1, 08, 8A, 5A, 00, 8B, 00, 8B, 15, FC, CA, 59, 00, E8, 48, 77, EF, FF, A1, 08, 8A, 5A, 00, 8B, 00, E8, BC, 77, EF, FF, E8, 07, 39, E6, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.6297

Developed / compiled with:
Microsoft Visual C++

Code size:
1.6 MB (1,702,912 bytes)

The file app-upgrade.exe has been seen being distributed by the following URL.

Scan app-upgrade.exe - Powered by Reason Core Security