bf4.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.share.az.
MD5:
40895a18bb0a18c259672948165bcf01

SHA-1:
08054254b66004d1ec4caf20386f971b73875b78

SHA-256:
24b82bc75d35fa829cc76f441973aaa5d8dbd1e91ce5d996885d11b3c2a7d0e6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 6:46:53 AM UTC  (today)

File size:
660 KB (675,797 bytes)

File type:
Executable application (Win16 EXE)

File PE Metadata
OS bitness:
Win16

Linker version:
25.0

CTPH (ssdeep):
12288:tNIpvNfw276S/Duo6FcfbmiJ99VPhYR5MTSHvLenELUnv1lso4J/Ht2h/Fy452U8:P0Vw2WW6FcfbP9VPSPMTSPL/Unvzv4Jf

Entry address:
0x908

Entry point:
10, DF, 68, 18, DF, 68, 20, 8B, 48, 28, 89, 4A, 28, DF, 7A, 20, DF, 7A, 18, DF, 7A, 10, DF, 7A, 08, DF, 3A, C3, 90, DF, 28, DF, 68, 08, DF, 68, 10, DF, 68, 18, DF, 68, 20, DF, 68, 28, 8B, 48, 30, 89, 4A, 30, DF, 7A, 28, DF, 7A, 20, DF, 7A, 18, DF, 7A, 10, DF, 7A, 08, DF, 3A, C3, 8D, 40, 00, DF, 28, DF, 68, 08, DF, 68, 10, DF, 68, 18, DF, 68, 20, DF, 68, 28, DF, 68, 30, 8B, 48, 38, 89, 4A, 38, DF, 7A, 30, DF, 7A, 28, DF, 7A, 20, DF, 7A, 18, DF, 7A, 10, DF, 7A, 08, DF, 3A, C3, 90, DF, 28, DF, 68, 08, DF, 68...
 
[+]

Code size:
2.2 KB (2,300 bytes)

The file bf4.exe has been seen being distributed by the following URL.

Scan bf4.exe - Powered by Reason Core Security