bavpro_setup_mini_c1.exe

Baidu Antivirus

Baidu, Inc.

This is a setup and installation application. The file has been seen being downloaded from baidu-antivirus.en.softonic.com.
Publisher:
Baidu, Inc.

Product:
Baidu Antivirus

Description:
Baidu Antivirus MiniSetup

Version:
5.6.0.120259

MD5:
fa6ff323680f052fe5f28bf864a24304

SHA-1:
4c2d91ceb2622719cdac13cf8cbaf3062f146ec0

SHA-256:
6be022fcc28db119810042c976029248bd30f48c87be3815e84e85ac68934789

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 6:44:44 PM UTC  (today)

File size:
2 MB (2,102,960 bytes)

Product version:
5.6.0.120259

Copyright:
Copyright (C) 2014 Baidu, Inc. All Rights Reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\bavpro_setup_mini_c1.exe

File PE Metadata
Compilation timestamp:
4/10/2010 5:19:31 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:KWlOHAgYlAo33NikEC6HupoWFtYE6s50HkqGkPRH:Kdu3gpCPoQNoc0H

Entry address:
0x354B

Entry point:
85, FB, 0F, AF, ED, C7, C5, EA, ED, 9D, 76, 52, 0F, AF, F2, 1C, 44, FF, C1, F7, C7, 72, D8, 24, 2E, 89, E9, 87, EF, F6, C1, 45, 0B, D5, 8D, 35, 04, F2, D6, 44, 87, E9, 05, 51, 46, 01, 00, 86, F1, FF, C3, C7, C5, A8, 8D, 47, CA, 2D, BB, C0, 00, 00, F7, C6, C6, 10, 62, C6, EB, 06, 84, D9, 08, D9, 33, EE, 69, D2, B8, 7E, AF, C4, 08, D0, E8, 2A, 00, 00, 00, F7, C7, B7, 14, 58, 68, 8B, EE, 0F, B6, D3, C6, C3, ED, FE, C1, 68, 33, 9B, 00, 00, F7, C6, 1A, 91, 49, D6, 0F, AF, F1, 58, 69, FA, B0, A6, 98, 07, 35, 2F...
 
[+]

Entropy:
7.9922  (probably packed)

Code size:
25 KB (25,600 bytes)

The file bavpro_setup_mini_c1.exe has been seen being distributed by the following URL.

Scan bavpro_setup_mini_c1.exe - Powered by Reason Core Security