automapa_6.19_1512_pl_demo.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from dl.soft-4-free.com.
MD5:
2c5e22ffb1dc37b6eba4dd17ca6b4520

SHA-1:
0076c0b412bb2987d24231a89266fbca61332543

SHA-256:
5b7a16134b73a0668108680ecba6c8cacc47cca102fef7e760ae2297078ef6d5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 3:06:48 PM UTC  (today)

File size:
1 MB (1,093,098 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\automapa_6.19_1512_pl_demo.exe

File PE Metadata
Compilation timestamp:
12/16/2015 8:23:25 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
12288:kesVuxqDn9FMD0Tysgk1Bt7nft2fDiJmFE5Y9Q4TUnWM1ZHTjAeJ0m4XTYY:kjVuYn9FMDagk/lmW5AhT4WMTsPYY

Entry address:
0x74E06

Entry point:
E8, 6B, 7F, 00, 00, E9, 17, FE, FF, FF, B8, 97, D8, 47, 00, A3, 0C, F9, 4E, 00, C7, 05, 10, F9, 4E, 00, 93, CF, 47, 00, C7, 05, 14, F9, 4E, 00, 51, CF, 47, 00, C7, 05, 18, F9, 4E, 00, 85, CF, 47, 00, C7, 05, 1C, F9, 4E, 00, FB, CE, 47, 00, A3, 20, F9, 4E, 00, C7, 05, 24, F9, 4E, 00, 11, D8, 47, 00, C7, 05, 28, F9, 4E, 00, 11, CF, 47, 00, C7, 05, 2C, F9, 4E, 00, 7B, CE, 47, 00, C7, 05, 30, F9, 4E, 00, 0A, CE, 47, 00, C3, E8, 9B, FF, FF, FF, E8, C2, 8A, 00, 00, 83, 7C, 24, 04, 00, A3, 30, BA, 4F, 00, 74, 05...
 
[+]

Code size:
720 KB (737,280 bytes)

The file automapa_6.19_1512_pl_demo.exe has been seen being distributed by the following URL.

Scan automapa_6.19_1512_pl_demo.exe - Powered by Reason Core Security