comentario mathew henry.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from download1637.mediafire.com.
MD5:
e5e554c17e4b1d1125fc55c0bc5b39e8

SHA-1:
3315b9ebb29e1bfddc1717a12276fa72fd90f49f

SHA-256:
8923cbe456acab489910120562b8b6d0bd1dbf55c1c915136e67b32b49070895

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 2:54:48 PM UTC  (today)

File size:
2.9 MB (3,037,564 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\e-sword10+modulos\e-sword - comentarios\comentario mathew henry.exe

File PE Metadata
Compilation timestamp:
1/22/2004 7:36:06 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
49152:AgAc5KxxcI7wzj42d9J1gsgogAbxeF/SHIcDQlJ/MU9r2bxo/1gPoMECljl0juxk:AZcwSdfJ1gsgoHaSHIYQlWU9SbxdPXEV

Entry address:
0x20A70

Entry point:
60, BE, 00, 60, 41, 00, 8D, BE, 00, B0, FE, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Entropy:
7.9969

Packer / compiler:
UPX 2.90LZMA

Code size:
44 KB (45,056 bytes)

The file comentario mathew henry.exe has been discovered within the following program.

e-Sword  by Rick Meyers
e-Sword is a Bible study computer software package created by Rick Meyers and developed for Microsoft Windows. The user interface is available in twenty seven different languages. Resources are available in over eighty languages.
www.e-sword.net
6% remove it
 
Powered by Should I Remove It?

The file comentario mathew henry.exe has been seen being distributed by the following URL.

Scan comentario mathew henry.exe - Powered by Reason Core Security