chimera.exe

Chimera tool

Euro-Server s.r.o.

This is a setup program which is used to install the application. The file has been seen being downloaded from chimeratool.com.
Publisher:
Euroserver Sro.  (signed by Euro-Server s.r.o.)

Product:
Chimera tool

Description:
Chimera mobile tool

Version:
4, 81, 1722, 0

MD5:
f4027933bb678c7853b2f97627f76acf

SHA-1:
40f11dc58004267fe05e6859e88e4a8eeac9d0ce

SHA-256:
e1ef020d7441d4e2c4cec6316b3dc49d2ab268bf89772228bb28a3673df8c886

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 8:43:25 PM UTC  (today)

File size:
29 MB (30,373,096 bytes)

Product version:
4, 81, 1722, 0

Copyright:
Copyright (C) 2014 Euroserver Sro.

Original file name:
chimera.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
11/14/2014 11:44:12 AM

Valid to:
11/14/2015 11:44:12 AM

Subject:
CN=Euro-Server s.r.o., O=Euro-Server s.r.o., L=Dunajska Streda, C=SK

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
040038FA735341

File PE Metadata
Compilation timestamp:
1/20/2015 11:09:20 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
786432:XOsjgMXu9mt26gOT9jceB5g+wPXc3KNwpkMmbT:ngMXq6gOpj/5g+wEOZT

Entry address:
0x16CE000

Entry point:
52, 89, 0C, 24, 52, 68, CD, 32, 36, 1B, 89, 0C, 24, B9, 40, 19, 70, 4F, 49, 81, E9, 3F, 19, 70, 4F, 89, CA, 59, 89, 54, 24, 04, 5A, 56, 89, 14, 24, 89, 1C, 24, C7, 04, 24, 1B, D7, DC, 77, F7, 1C, 24, 81, 0C, 24, AF, FE, CF, 7F, C1, 24, 24, 01, FF, 0C, 24, 81, 2C, 24, E3, AA, 64, B0, 81, 2C, 24, F9, 52, 7B, 4F, 57, 55, 53, 57, BF, 85, 57, DA, 7F, 81, E7, 57, 98, FD, 7B, 81, E7, 8E, FD, F3, 7D, 81, CF, D3, 63, EF, 7C, 81, F7, 51, 9E, FB, 5E, 81, EF, 86, ED, C4, 22, 89, FB, 5F, 89, DD, 8B, 1C, 24, 81, C4, 04...
 
[+]

Entropy:
7.9975  (probably packed)

Code size:
9.7 MB (10,123,264 bytes)

The file chimera.exe has been seen being distributed by the following URL.

Scan chimera.exe - Powered by Reason Core Security