cdm_setup.exe

This is a self-extracting archive and installer. The file has been seen being downloaded from www.polon-alfa.pl and multiple other hosts.
MD5:
8ceee4da489036d4e4b0fbf1aed15679

SHA-1:
aa82f3582fb01c41be34ad4f9a6cf599bd21f7d9

SHA-256:
f2fe2e8e4c80416cd03bd059c473d77e4d5040a8441dbe705fd7ff58acfdc4ae

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 12:39:53 PM UTC  (today)

File size:
2.3 MB (2,397,163 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\nielsen\homescan internet transporter\cdm_setup.exe

File PE Metadata
Compilation timestamp:
6/19/2007 8:53:02 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:7Hmu9sF1YCYP2g2waMyMsbX0zlyiyUnV+FYroTz50Tns6i:CuuFfxzMjy0zly+Y2roTl0TsB

Entry address:
0x1ADD4

Entry point:
55, 8B, EC, 6A, FF, 68, 38, E6, 43, 00, 68, 28, EA, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 40, E1, 43, 00, 33, D2, 8A, D4, 89, 15, E0, 8D, 45, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, DC, 8D, 45, 00, C1, E1, 08, 03, CA, 89, 0D, D8, 8D, 45, 00, C1, E8, 10, A3, D4, 8D, 45, 00, 33, F6, 56, E8, 8F, 3B, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 5A, 38, 00, 00, FF, 15, 3C, E1, 43, 00, A3, 74, BD, 45, 00, E8...
 
[+]

Entropy:
7.4712

Code size:
244 KB (249,856 bytes)

The file cdm_setup.exe has been discovered within the following programs.

BaseStation  by Kinetic Avionics Products Ltd
www.kineticavionics.co.uk
About 1% of users remove it
MasterBox  by Masterbox.com
www.MasterBox.com
About 9% of users remove it
NCP Internet Transporter  by National Consumer Panel
Publisher's description - “The National Consumer Panel consists of people from all demographic and geographic areas of the United States. By scanning the barcodes on their purchases and completing surveys, panelists' consumer voices make an impact in the marketplace.”
www.ncponline.com
About 5% of users remove it
Pluto Manager  by Jokab Safety AB
www.jokabsafety.com
About 6% of users remove it
P-Plus  by Aghub
About 8% of users remove it
www.usdigital.com
About 1% of users remove it
 
Powered by Should I Remove It?

The file cdm_setup.exe has been seen being distributed by the following 16 URLs.

http://www.polon-alfa.pl/sites/default/files/sites/default/files/polon/.../CDM 2.04.16.exe

http://www.colaboranet.com/php/.../dl.php?f=USBDriverInstallerV2_f16_cbf.04.16.exe&p=m&idm=275781&h=aa821

http://www.polon-alfa.pl/sites/default/.../CDM 2.04.16.exe

http://www.gripone.com/CDM 2.04.16.exe

http://polon-alfa.pl/sites/default/files/sites/default/files/polon/.../CDM 2.04.16.exe

http://archivos5.movistar.cl/timg/pcorte/.../USB Drivers 2.04.16.exe

http://www.laserproductsus.com/dlfiles/.../CDM2.04.16.exe

http://www.metasystem.it/index.php/msy_ita_it/content/download/131990/1276596/.../DRIVER_CBL_COMVOL_CDM 2.04.16.exe

Scan cdm_setup.exe - Powered by Reason Core Security