arcgis_desktop_104_149411.exe

ArcGIS 10.4 for Desktop

Environmental Systems Research Institute Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from docs.google.com and multiple other hosts.
Publisher:
Esri  (signed by Environmental Systems Research Institute Inc.)

Product:
ArcGIS 10.4 for Desktop

Version:
10.4.0.5524

MD5:
cd229ce947a79fafec04f109a13a2772

SHA-1:
0534262bc57b70bf73c344edb05d26a2a0ebff59

SHA-256:
5cca4f80c729622d31cca7f269c610197bd564dd5a60b4f40d65a4503ca541a7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 1:09:35 AM UTC  (today)

File size:
940.6 MB (986,337,664 bytes)

Product version:
10.4.0.5524

Copyright:
Copyright ©1999-2016 Esri Inc. All Rights Reserved

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\arcgis_desktop_104_149411.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
9/2/2015 4:00:00 AM

Valid to:
10/2/2018 3:59:59 AM

Subject:
CN=Environmental Systems Research Institute Inc., O=Environmental Systems Research Institute Inc., L=Redlands, S=California, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
2BA721422482950208D9A17E99E198DB

File PE Metadata
Compilation timestamp:
1/16/2016 12:50:43 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
25165824:/SxmqJeKjcIwUwDVQpWebUrwJKhUeHNO/srdOFZrdI18gBn:q6KjFstr1H8/AWrgBn

Entry address:
0xC2B0

Entry point:
55, 89, E5, 6A, FF, 68, E4, 3C, 41, 00, 68, 48, D9, 40, 00, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 83, EC, 08, 83, EC, 48, 53, 56, 57, 89, 65, E8, 68, 00, 00, 00, 02, E8, CD, 2F, 00, 00, 59, A3, 80, 50, 41, 00, E8, 02, 1A, 00, 00, 85, C0, 74, 2F, C7, 45, FC, 00, 00, 00, 00, E8, 22, 1C, 00, 00, E8, DD, 1C, 00, 00, E8, 28, 1D, 00, 00, E8, 33, 21, 00, 00, E8, CE, 21, 00, 00, BB, C0, 4C, 41, 00, 81, FB, C0, 4C, 41, 00, 73, 1C, EB, 0D, 6A, FE, E8, 78, 22, 00, 00, 59, E9, 91, 00, 00, 00, FF, 13...
 
[+]

Entropy:
7.9999  (probably packed)

Code size:
71.5 KB (73,216 bytes)

The file arcgis_desktop_104_149411.exe has been seen being distributed by the following 14 URLs.

https://docs.google.com/uc?export=download&confirm=UtsZ&id=0B7Pioe5aby7DZnpDbUozVUxvbW8

https://docs.google.com/uc?export=download&confirm=xW30&id=0B7Pioe5aby7DZnpDbUozVUxvbW8

https://netdrive.reading.ac.uk/HTCOMNET/Handlers/Download.ashx?action=download&file=Software/Arcgis/.../ArcGIS_Desktop_104_149411.exe

http://esri.giub.uni-bonn.de:2345/.../ArcGIS_Desktop_104_149411.exe

https://docs.google.com/uc?export=download&confirm=2EkB&id=0B7Pioe5aby7DZnpDbUozVUxvbW8

https://docs.google.com/uc?export=download&confirm=oAuN&id=0B7Pioe5aby7DZnpDbUozVUxvbW8

https://docs.google.com/uc?export=download&confirm=w0ji&id=0B7Pioe5aby7DZnpDbUozVUxvbW8

ftp://ftp.unicamp.br/pub2/apoio/.../ArcGIS_Desktop_104_149411.exe

https://docs.google.com/uc?export=download&confirm=FIIg&id=0B7Pioe5aby7DZnpDbUozVUxvbW8

http://swdb.ucl.ac.uk/package/downloadfile/id/3/.../3315

https://docs.google.com/uc?export=download&confirm=Ro_g&id=0B7Pioe5aby7DZnpDbUozVUxvbW8

https://engineering.olemiss.edu/gge/files/.../ArcGIS_Desktop_104_149411.exe

Scan arcgis_desktop_104_149411.exe - Powered by Reason Core Security