ca_free_newbabyphotobook.exe

DaisyTrail Digikit

Serif (Europe) Ltd

This is a setup and installation application. The file has been seen being downloaded from dt-live.s3.amazonaws.com and multiple other hosts.
Publisher:
Serif (Europe) Ltd., support@serif.co.uk  (signed by Serif (Europe) Ltd)

Product:
DaisyTrail Digikit

Description:
DaisyTrail Digikit Setup

Version:
1.0.0.0

MD5:
8bdf1ef71b34e359a1f8989767e4ec7e

SHA-1:
c0a3ef818438b7c1330282634579ca06ee59e7ee

SHA-256:
f8ab18b70da03a7b45f457cfa99b97912d2c826afcc6c9db75207b8dd8327672

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 12:02:33 PM UTC  (today)

File size:
10.6 MB (11,145,784 bytes)

Product version:
1.0.0.001

Copyright:
Serif CraftArtist 1.0.0 © 2011 Serif (Europe) Ltd. All Rights Reserved.

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\ca_free_newbabyphotobook.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/1/2010 7:00:00 PM

Valid to:
4/3/2013 7:59:59 PM

Subject:
CN=Serif (Europe) Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Serif (Europe) Ltd, L=Nottingham, S=Nottinghamshire, C=GB

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7903E8A99E7F4DF4A874DE164DF90808

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:Yilwj6xsaZMdnWWnnrPXNSh+IyCOjoLyx9k5uFifh5B6y/KipfSjStXkbSrncnyn:Kx1nr1ShLJOj1kUZyCcS2tXkbYqym8

Entry address:
0x2EF4

Entry point:
55, 8B, EC, 83, C4, F4, B8, CC, 2E, 40, 00, E8, F8, EC, FF, FF, E8, 5B, F6, FF, FF, E8, 36, F5, FF, FF, E8, 11, E8, FF, FF, 90, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9830

Developed / compiled with:
Microsoft Visual C++

Code size:
8 KB (8,192 bytes)

The file ca_free_newbabyphotobook.exe has been seen being distributed by the following 3 URLs.

Scan ca_free_newbabyphotobook.exe - Powered by Reason Core Security