codmw2.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from fileshare1010.dfiles.eu and multiple other hosts.
MD5:
658c502e6d41ad085a1a0e7510687940

SHA-1:
31e51f4883b7d2bb3eb4925c24624c72805dbe8b

SHA-256:
8f3e82b5aa75bcf171cdf94fe84ed2f6ad9795c2595d6a989a50c4ae48cf6973

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/14/2024 9:26:10 PM UTC  (today)

File size:
53 MB (55,531,474 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
12/1/2013 9:08:28 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:ITVFZ2xpPLt+yX/9NU6J+BF+wcJcBssqtYyL:ITzqt++3v+v+wcyqtF

Entry address:
0x108AF

Entry point:
E8, 9C, 58, 00, 00, E9, 78, FE, FF, FF, 55, 8B, EC, 83, EC, 04, 89, 7D, FC, 8B, 7D, 08, 8B, 4D, 0C, C1, E9, 07, 66, 0F, EF, C0, EB, 08, 8D, A4, 24, 00, 00, 00, 00, 90, 66, 0F, 7F, 07, 66, 0F, 7F, 47, 10, 66, 0F, 7F, 47, 20, 66, 0F, 7F, 47, 30, 66, 0F, 7F, 47, 40, 66, 0F, 7F, 47, 50, 66, 0F, 7F, 47, 60, 66, 0F, 7F, 47, 70, 8D, BF, 80, 00, 00, 00, 49, 75, D0, 8B, 7D, FC, 8B, E5, 5D, C3, 55, 8B, EC, 83, EC, 10, 89, 7D, FC, 8B, 45, 08, 99, 8B, F8, 33, FA, 2B, FA, 83, E7, 0F, 33, FA, 2B, FA, 85, FF, 75, 3C, 8B...
 
[+]

Code size:
98 KB (100,352 bytes)

The file codmw2.exe has been seen being distributed by the following 16 URLs.

http://fileshare1010.dfiles.eu/auth-14687767799db536192dcf86f1f795e5-87.10.28.138-2623993326-162164070-guest/.../CODMW2.exe

http://fileshare1010.dfiles.eu/auth-14842463520a293b2f5366bf73d67b19-79.43.40.243-87368755-162164070-guest/.../CODMW2.exe

http://fileshare1010.dfiles.eu/auth-1473155533d43fa215b5e9a479e9f966-79.12.36.114-2673519693-162164070-guest/.../CODMW2.exe

http://fileshare1010.dfiles.eu/auth-1463245424dc1cf8c598775bc5746385-95.234.130.26-2563023304-162164070-guest/.../CODMW2.exe

http://fileshare1010.dfiles.eu/auth-147610559960f261f00fc515069ba31c-82.50.149.57-7907690-162164070-guest/.../CODMW2.exe

http://fileshare1010.dfiles.eu/auth-1471991406b7316a178a57f036f9afaf-79.40.93.253-2660130847-162164070-guest/.../CODMW2.exe

http://fileshare1010.dfiles.eu/auth-14768060345904c75e27b69b1396bdf7-93.34.90.193-14862216-162164070-guest/.../CODMW2.exe

http://fileshare1010.dfiles.eu/auth-14744609284211fc10f0f4163097cdbd-80.117.21.25-2687972241-162164070-guest/.../CODMW2.exe

http://fileshare1010.dfiles.eu/auth-1472837787a7d623c4d08f3757d0c30d-134.90.236.225-2669459322-162164070-guest/.../CODMW2.exe

http://fileshare1010.dfiles.eu/auth-14786120357575253ac22b3a69eea5e8-151.73.158.53-33477489-162164070-guest/.../CODMW2.exe

Scan codmw2.exe - Powered by Reason Core Security