candytwistsetup.exe

Appenity LLC

Publisher:
Appenity LLC  (signed and verified)

MD5:
353c2dd179225722a7b98c5456f984bf

SHA-1:
1e3e6e2b4de1dad11952486f0fb8faedc5b9b8cc

SHA-256:
ff654c99a03b8af61ca7dc7856800d7d2136afaa059c498811b5294d4a9e8eeb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 6:53:06 PM UTC  (today)

File size:
263.4 KB (269,760 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\candytwistsetup.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
4/16/2013 5:00:00 PM

Valid to:
4/17/2015 4:59:59 PM

Subject:
CN=Appenity LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Appenity LLC, L=Los Angeles, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
75AB910B4E2F0C1BCB6E83649F5945FF

File PE Metadata
Compilation timestamp:
4/28/2014 7:13:50 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
6144:KMY8NcVFd+R+r4LCROu88XhrnoaKutCd9QfJdzQlv:4IcVEgOu1XRndC7KzYv

Entry address:
0x18096

Entry point:
E8, 56, 51, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, 88, 9C, 43, 00, 89, 0D, 84, 9C, 43, 00, 89, 15, 80, 9C, 43, 00, 89, 1D, 7C, 9C, 43, 00, 89, 35, 78, 9C, 43, 00, 89, 3D, 74, 9C, 43, 00, 66, 8C, 15, A0, 9C, 43, 00, 66, 8C, 0D, 94, 9C, 43, 00, 66, 8C, 1D, 70, 9C, 43, 00, 66, 8C, 05, 6C, 9C, 43, 00, 66, 8C, 25, 68, 9C, 43, 00, 66, 8C, 2D, 64, 9C, 43, 00, 9C, 8F, 05, 98, 9C, 43, 00, 8B, 45, 00, A3, 8C, 9C, 43, 00, 8B, 45, 04, A3, 90, 9C, 43, 00, 8D, 45, 08, A3, 9C, 9C, 43...
 
[+]

Entropy:
6.4582

Code size:
160.5 KB (164,352 bytes)

The file candytwistsetup.exe has been seen being distributed by the following URL.

http://logic.installconnect.com/offers/?ta=dE4smPFA7ALqkcJDHfFeQdGB0GR/HnqNxtT6tBlqEczs&a=Zk4vnPEZ5Aib M4aLFXU9CEhk5EI2m2hMn5nitceNW ok34n3ImWcD3tvQxqNA8KYy/7u3pEy6BNbVDq51cU8539gTrhRVxfAfl5mRNk6 uzIe5smR/w5O8N9RLxGxwz1rQG12YotFgWNH13zxKfkX3rW1ywgh3IhvCPZ4jJrjNLHDeEUma4QzMc16cVSH1oPrj7aWRLoxmrkr7OhtOMdmf8DlLZaBNZ6gN0eNymDQRW1rppWvRI/MlVb0njn8Oo1C2V/FyNJci00fwoUwLavyFTCucAYo0p oGk0/GxufmCgv47XoqZEKOcw3Bl34aINh1E1TPHm1OfR4xPfedhf8lapWZBC4v/06kQJTPNrElDItGHM0Vj5tQ5Jnj8TzMQS7HwIq3MzmfNg57WKf2SPS8Wyzmlo4aAmTdr1t2pIk/wcEuAH B9U8Pe4SbGyrEZsqxsv/HkEyUwf9dnzCviP5zs s8QCO36TG1z4tNxPc1KDPIE0t/TrUmzunDzkDqYzIszyUHam3SPtptp6MibomZVrOYQVjSqp6XBq HF3osp6klv C9y9beAO5WpfIMMGzR9h5Z/.../Xyb7VDNqmMpHeTwELxjiDAzRanloIhx2Urf8tpgJVmC8paqllt3IEvd5w1y2nGw fwnjM 6ked1GHIvvoMx61BlHFkdrE=

Scan candytwistsetup.exe - Powered by Reason Core Security