configurabde.exe

SICNET Tecnologia de Soluções Ltda

This is a setup program which is used to install the application. The file has been seen being downloaded from www.sicnet.com.br.
Publisher:
SICNET Tecnologia de Soluções Ltda  (signed and verified)

MD5:
d1f5c55fe6b7f935d02f84de9d2ac27a

SHA-1:
aff411081d2a1cbec68d910dfc0a9109432ea977

SHA-256:
763ba1f59350572b0a14c00625d32399c4b4b2383f24e535954cc5c1e8ca080e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 4:47:33 AM UTC  (today)

File size:
1.3 MB (1,330,920 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\configurabde.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
7/19/2012 9:00:00 PM

Valid to:
7/20/2014 8:59:59 PM

Subject:
CN=SICNET Tecnologia de Soluções Ltda, OU=Software, O=SICNET Tecnologia de Soluções Ltda, STREET="Av. Paulista, 807", STREET=conjunto 8 04, STREET=Bela Vista, L=São Paulo, S=SP, PostalCode=01311 915, C=BR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00E99FF97C03CCCFB820500D36AD0DDC83

File PE Metadata
Compilation timestamp:
2/22/2014 4:34:30 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:NlD7/FpHkSVP/Am8aWtrLB7SgeupBO7iXOGAgfGiY188vfjISYbipM:bkSOBpL5S0p0uld2jISAiS

Entry address:
0x113E3C

Entry point:
55, 8B, EC, 83, C4, F0, B8, 68, CE, 50, 00, E8, E4, 6A, EF, FF, A1, 38, 79, 51, 00, 8B, 00, E8, 58, 31, FA, FF, A1, 38, 79, 51, 00, 8B, 00, B2, 01, E8, 86, 4E, FA, FF, A1, 38, 79, 51, 00, 8B, 00, BA, AC, 3E, 51, 00, E8, 55, 2B, FA, FF, 8B, 0D, D8, 7A, 51, 00, A1, 38, 79, 51, 00, 8B, 00, 8B, 15, E4, C1, 50, 00, E8, 39, 31, FA, FF, A1, 38, 79, 51, 00, 8B, 00, E8, 7D, 32, FA, FF, E8, 6C, 22, EF, FF, B0, 04, 02, 00, FF, FF, FF, FF, 13, 00, 00, 00, 43, 00, 6F, 00, 6E, 00, 66, 00, 69, 00, 67, 00, 75, 00, 72, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.1 MB (1,123,840 bytes)

The file configurabde.exe has been seen being distributed by the following URL.

Scan configurabde.exe - Powered by Reason Core Security