classicupdte4_7a3.exe

Sage Deploy

SAGE SOUTH AFRICA (PTY) LTD

Publisher:
Sage South Africa  (signed by SAGE SOUTH AFRICA (PTY) LTD)

Product:
Sage Deploy

Description:
ClassicUpdate4.7a

Version:
0.0.124.8

MD5:
105b112e3a32f026254ef0b8e5d052dd

SHA-1:
9adc32c27223c2e1d6a5ff2e1595197a06357f4c

SHA-256:
6db0825dd7d5082c0a74d3a74d4e17d920070a3a5774cda212101176826dec02

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/15/2025 9:24:13 AM UTC  (today)

File size:
145.6 MB (152,632,528 bytes)

Product version:
0.0.124.8

Copyright:
© Sage South Africa Pty Ltd 2016. All Rights Reserved.

Original file name:
SetupHost.exe

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\classicupdte4_7a3.exe.quz0tx9.partial

Digital Signature
Authority:
thawte, Inc.

Valid from:
4/28/2016 2:00:00 AM

Valid to:
7/24/2017 1:59:59 AM

Subject:
CN=SAGE SOUTH AFRICA (PTY) LTD, O=SAGE SOUTH AFRICA (PTY) LTD, L=Johannesburg, S=Gauteng, C=ZA

Issuer:
CN=thawte SHA256 Code Signing CA, O="thawte, Inc.", C=US

Serial number:
494BE14AC8EC8889EDB1D3EFC6FF04E6

File PE Metadata
Compilation timestamp:
9/14/2016 3:23:38 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3145728:EYO/VpwTMmidPzfdV63UKTdAd+i14MlsKRDokqG0SfYbVzc55nHT7wyEgc:EfqidbdVXKi+YBtl0Vm5H9c

Entry address:
0x918CA7E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
145.5 MB (152,611,840 bytes)

The file classicupdte4_7a3.exe has been seen being distributed by the following URL.

https://mirror.sagevip.co.za/.../classicupdte4_7a3.exe

Scan classicupdte4_7a3.exe - Powered by Reason Core Security