bt_3.1.1311_s32.exe

Intel PROSet/Wireless

Motorola Solutions Inc.

This is a self-extracting archive and installer. The file has been seen being downloaded from sciologness.com and multiple other hosts.
Publisher:
Intel(R) Corporation  (signed by Motorola Solutions Inc.)

Product:
Intel(R) PROSet/Wireless

Description:
Intel(R) PROSet/Wireless SEStub Setup Program

Version:
15, 5, 0, 0

MD5:
233224a551ae5bfc3f88d578e2ad64f4

SHA-1:
6772256bd2e9bf132effe6a66c398b653c091527

SHA-256:
805fa60e82d6a2633434409ee123d13853fba2a57487aaf88c2e7fb9b9cd2dcf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 3:53:53 PM UTC  (today)

File size:
36.4 MB (38,191,128 bytes)

Product version:
15, 5, 0, 0

Copyright:
Copyright © Intel Corporation 2006-2011

Original file name:
SEStub.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\bt_3.1.1311_s32.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/7/2012 12:00:00 AM

Valid to:
3/8/2015 11:59:59 PM

Subject:
CN=Motorola Solutions Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Motorola Solutions Inc., L=Schaumburg, S=Illinois, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
0E4B18ABAE5203692365ADA2A6452929

File PE Metadata
Compilation timestamp:
4/18/2012 11:14:56 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
786432:LsD8qATk+P1U17KjdDVGIaQsZwhWV+nDywTPdistDK0YXdb8:w4qAPPrDgLzwhokhK0Wdb8

Entry address:
0x17092

Entry point:
E8, 39, BE, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, 3D, 34, 6D, 44, 00, 00, 75, 18, E8, D2, B7, 00, 00, 6A, 1E, E8, 1C, B6, 00, 00, 68, FF, 00, 00, 00, E8, B8, FA, FF, FF, 59, 59, 8B, 45, 08, 85, C0, 75, 01, 40, 50, 6A, 00, FF, 35, 34, 6D, 44, 00, FF, 15, 64, 81, 43, 00, 5D, C3, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 83, FB, E0, 77, 6F, 56, 57, 83, 3D, 34, 6D, 44, 00, 00, 75, 18, E8, 88, B7, 00, 00, 6A, 1E, E8, D2, B5, 00, 00, 68, FF, 00, 00, 00, E8, 6E, FA, FF, FF, 59, 59, 85, DB, 74, 04, 8B, C3...
 
[+]

Entropy:
7.9978  (probably packed)

Code size:
220 KB (225,280 bytes)

The file bt_3.1.1311_s32.exe has been seen being distributed by the following 10 URLs.

http://sciologness.com/files/.../

http://dl-ca1.driverscape.com/files/.../BT_3.1.1311_s32.exe

http://dl-ca2.driverscape.com/files/.../BT_3.1.1311_s32.exe