b25ljtiwb25ljtiwb25l.exe

Desktop Icon Toy

iDeskSoft, Inc.

This is a setup and installation application. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
iDeskSoft, Inc.

Product:
Desktop Icon Toy

Description:
Desktop Icon Toy Setup

MD5:
d460cd3f5c24c70d01b4333b8917b8cd

SHA-1:
7bdda073aec2b613bd8e0803d2c7f591978b6a4a

SHA-256:
a51a54b4a0ef60ef075c0de2da65c7c2e9fa0bca09c2b4ae4b67eb5e448d869f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 7:02:02 AM UTC  (today)

File size:
775.9 KB (794,563 bytes)

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\b25ljtiwb25ljtiwb25l.exe

File PE Metadata
Compilation timestamp:
6/10/2010 4:33:52 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:j37h6c4888888888888W88888888888VjXYbA9tr3iP03YzuOMZBmYvO7m4uWjUG:z7hc5br3FYzFM3/vj9F7kid/iqql

Entry address:
0x163C4

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, 54, 55, 41, 00, E8, 70, 04, FF, FF, 33, C0, 55, 68, 91, 6A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 4D, 6A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, AB, 41, 00, E8, A6, EF, FF, FF, E8, B1, EA, FF, FF, 8D, 55, EC, 33, C0, E8, FB, 87, FF, FF, 8B, 55, EC, B8, A8, D6, 41, 00, E8, A6, EA, FE, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, A8, D6, 41, 00, B2, 01...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
85 KB (87,040 bytes)

The file b25ljtiwb25ljtiwb25l.exe has been seen being distributed by the following 9 URLs.

http://dw.uptodown.com/dwn/4yYDn7XyRCXkUgjtbKXhT2TO9LntPXVeaTg6KRuTwwXLiywiHi-WBuDd-F37Zn3Vz5Xz5DBlXXuegk-9Lre0LiN8m0ETxl8e6Iep6Lfe6KqBM7dz1jBeZY_9WddqJDsX/Ja0IrYyfpQT9gjiG3CcTNNyZfPYXQbh7M3FS33dEl5b2nnDbQYgXzAGQjuKQVdUsfo1S9bjRxKCgINqhmYND-h2GDtuX55xaCOl0k-eIXoF0AQfR2APWa8Niquh5OMBp/8JcMdykhas9ne5ilI56yzwoSbqddFV1p1I0mYlY5JD2qi94F5mB80Xdbo04_VL5v1-FtmjCcwVvtRHQJBDDGydwser8GmHh_LR0gaz4xV0mVNRrOLfW3ri-oF3itlh_l/.../

http://dw.uptodown.com/dwn/0BcE_FH4XmpAqhFNAtWbuPx8siGaCXRxo3vbvH4hb0IeE-vbFBFVHHmjpcj8wNgB06lwcx-sKUikP8h_6gwdKqnvAZTEm0zDqZJf9_D24rXZsWa99dAn95_aknIH4vUu/IHvK-9u-WGQ2cZfx3vHzguA_cKHFPC_CkHB8Wetkh9c_imFeA2tmnTrxnVjzeks2Q8Z5DVXiIx0KUbDOz_TLbS_9tYV4RMIV_2_FPpjnAxOa_1bveOG5oHqiDMkFNJ1Y/O1KNnxRuA8R0PMVF-Zc5n-A0n-Ioj0ZyG9cE6SuvH8TFp4E8kzQJecHCJ4HPZubQYrEL0tEtZtT1vkUX1Qxo7OFy3GiImhRux3aGYs4mGs1HseCU_cM1CyUoFz1dh0tU/.../

http://dw.uptodown.com/dwn/Ep-M0hR6FfynDeHxML42elde6zcITGzBdDYUK-WlXLfU2jM0Q4Z5Ny4-XN2mZs321aFnqQpnJvPDKV7DCLEqW19V0WHRKs0G7n0RN27IlC61of_KXDhUTzX1w-N_oKA4/vC9vO_OTLpwB2s13SXQgYWFHAgMOs6W5WVKQSc0vWS0vzjr72XQlyKIAE6KvGMNiBVkA13kzNF8ZXwTOO5PZQRk5yWROacE6w0VOAZhsDW_hoS3gNZeEuRuL39dDXDRs/-krPmPf1oFlKpnBJZ_FoQmTGWQqn4Wi6__NXSbOXdUBEv6yzeqbXV_zmjVM0IFvq8-Ubo_he4aPa3pV7o4SNZFLTabujXEuy4cPwY96o2aRKyT_3mjP-Oz5qAJs0e79e/.../

Scan b25ljtiwb25ljtiwb25l.exe - Powered by Reason Core Security