arcgis_desktop_104_es_149965.exe

ArcGIS 10.4 for Desktop

Environmental Systems Research Institute Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from software.esri.com and multiple other hosts.
Publisher:
Esri  (signed by Environmental Systems Research Institute Inc.)

Product:
ArcGIS 10.4 for Desktop

Version:
10.4.0.5524

MD5:
0e4e662c55c19139599fc6408e925a19

SHA-1:
65fb96281dc73d956175571767d806cdc1c3aa14

SHA-256:
5bb72dc7e359a7fe923309632147470ec1970d894d71a7acc4416dbb592af6de

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 12:45:40 AM UTC  (today)

File size:
1.3 GB (1,354,635,408 bytes)

Product version:
10.4.0.5524

Copyright:
Copyright ©1999-2016 Esri Inc. All Rights Reserved

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\arcgis_desktop_104_es_149965.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
9/1/2015 9:00:00 PM

Valid to:
10/1/2018 8:59:59 PM

Subject:
CN=Environmental Systems Research Institute Inc., O=Environmental Systems Research Institute Inc., L=Redlands, S=California, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
2BA721422482950208D9A17E99E198DB

File PE Metadata
Compilation timestamp:
3/25/2016 4:10:44 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
25165824:/SxmqJeKjcIwUwDVQpWebUrwJKhUeHNO/srdOFZrdI18gBWXkYmQyTGe7uAghU:q6KjFstr1H8/AWrgBWXkDLGecU

Entry address:
0xC2B0

Entry point:
55, 89, E5, 6A, FF, 68, D4, 3C, 41, 00, 68, 48, D9, 40, 00, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 83, EC, 08, 83, EC, 48, 53, 56, 57, 89, 65, E8, 68, 00, 00, 00, 02, E8, CD, 2F, 00, 00, 59, A3, 80, 50, 41, 00, E8, 02, 1A, 00, 00, 85, C0, 74, 2F, C7, 45, FC, 00, 00, 00, 00, E8, 22, 1C, 00, 00, E8, DD, 1C, 00, 00, E8, 28, 1D, 00, 00, E8, 33, 21, 00, 00, E8, CE, 21, 00, 00, BB, B0, 4C, 41, 00, 81, FB, B0, 4C, 41, 00, 73, 1C, EB, 0D, 6A, FE, E8, 78, 22, 00, 00, 59, E9, 91, 00, 00, 00, FF, 13...
 
[+]

Code size:
71.5 KB (73,216 bytes)

The file arcgis_desktop_104_es_149965.exe has been seen being distributed by the following 2 URLs.

http://software.esri.com/akdlm/software/arcgis/.../ArcGIS_Desktop_104_es_149965.exe

Scan arcgis_desktop_104_es_149965.exe - Powered by Reason Core Security