automapa_6.15_1402_pl.exe

AutoMapa

Aqurat sp. z o.o. & Geosystems sp. z. o.o.

This is a self-extracting archive and installer. The file has been seen being downloaded from s7005.chomikuj.pl and multiple other hosts.
Publisher:
Aqurat sp. z o.o. & Geosystems sp. z. o.o.

Product:
AutoMapa

Description:
AutoMapa Setup

Version:
6.13.0.0

MD5:
638de6987c36cecff324c389a85d30db

SHA-1:
b0d3ee756ba5bfdb5fd3c73fe929174b406a32ce

SHA-256:
ebba627eabc31221ca491db5b75b1d0727cbfb50462e1a146c9fa8aa1f265063

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 1:45:22 AM UTC  (today)

File size:
301.8 MB (316,408,792 bytes)

Product version:
6.13.0.0

Copyright:
Aqurat sp. z o.o. & Geosystems sp. z. o.o. All rights reserved.

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
12/22/2013 11:46:57 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6291456:4XwSvthj5LDrCW6kygAWKjCqgIJ6OA4YD4hVpujSBPA5ioxnr8b3UG3P:4XwSl7LDeLkf0gIFHDp89r8bkG3P

Entry address:
0x743C3

Entry point:
E8, 6E, 7F, 00, 00, E9, 17, FE, FF, FF, B8, 57, CE, 47, 00, A3, 2C, B9, 4E, 00, C7, 05, 30, B9, 4E, 00, 53, C5, 47, 00, C7, 05, 34, B9, 4E, 00, 11, C5, 47, 00, C7, 05, 38, B9, 4E, 00, 45, C5, 47, 00, C7, 05, 3C, B9, 4E, 00, BB, C4, 47, 00, A3, 40, B9, 4E, 00, C7, 05, 44, B9, 4E, 00, D1, CD, 47, 00, C7, 05, 48, B9, 4E, 00, D1, C4, 47, 00, C7, 05, 4C, B9, 4E, 00, 3B, C4, 47, 00, C7, 05, 50, B9, 4E, 00, CA, C3, 47, 00, C3, E8, 9B, FF, FF, FF, E8, C5, 8A, 00, 00, 83, 7C, 24, 04, 00, A3, 08, 7A, 4F, 00, 74, 05...
 
[+]

Code size:
708 KB (724,992 bytes)

The file automapa_6.15_1402_pl.exe has been seen being distributed by the following 2 URLs.

http://s7005.chomikuj.pl/File.aspx?e=ygCMkkmDlracYy91svjea688vHrwXEYBVbcU1Qbxu--M9fAqw7QZzvVt964JRnpp1ySRVD4zwa45MvoLoCWU88QTryAMCxWkaAOQ7w7z7kAJR703cIsOdwLr2hLT_wgUffsLMHXYSdHo8AusOtkc0fc1y6Gi1EgZQSXzJerfoYQ&pv=2

Scan automapa_6.15_1402_pl.exe - Powered by Reason Core Security