controlnowagentsetup.exe

ControlNowAgentInstaller

LogicNow Limited

This is a setup and installation application. The file has been seen being downloaded from console.us.controlnow.com.
Publisher:
LogicNow Ltd.  (signed by LogicNow Limited)

Product:
ControlNowAgentInstaller

Description:
ControlNow Agent Installer

Version:
1.0.0.0 0. 0. 0

MD5:
4820577401ca5b39e7d81a75692abf2a

SHA-1:
7e8cdca377f7d7414ea8ee76547ec4474c535735

SHA-256:
555fe34138bd3e0c42d3f18cf3f929bce88bb2568ec4e6c3e545db0c427f7d2a

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/25/2024 12:36:02 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Dropper.Gen
7.11.30.172

ESET NOD32
Detection.Undefined
9.7.0.302.0

F-Secure
Adware.Agent.PJT
11.2015-11-11_4

File size:
7.3 MB (7,700,304 bytes)

Product version:
1.0.0.0 0. 0. 0

Copyright:
Copyright © 2014 LogicNow Ltd.

Original file name:
ControlNowAgentInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\controlnowagentsetup.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
10/19/2014 8:00:00 PM

Valid to:
12/20/2017 7:00:00 AM

Subject:
CN=LogicNow Limited, O=LogicNow Limited, L=Dundee, S=Angus, C=GB

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
01FD3EC405E1141687A9D4A6AD2CE6F7

File PE Metadata
Compilation timestamp:
7/21/2007 10:33:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:uHTTtk3iN+K1PuYBNQtqki4ISiIe149pkGPgx8alGHP3TBo9U:uzJk3iN5uAHkeSy40GPgxuHPTBoy

Entry address:
0x11DE6

Entry point:
55, 8B, EC, 6A, FF, 68, E0, 49, 41, 00, 68, E0, 1D, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, 28, 41, 41, 00, 59, 83, 0D, 64, 97, 41, 00, FF, 83, 0D, 68, 97, 41, 00, FF, FF, 15, 2C, 41, 41, 00, 8B, 0D, 40, 93, 41, 00, 89, 08, FF, 15, 30, 41, 41, 00, 8B, 0D, 3C, 93, 41, 00, 89, 08, A1, 34, 41, 41, 00, 8B, 00, A3, 60, 97, 41, 00, E8, 1C, 01, 00, 00, 39, 1D, 90, 91, 41, 00, 75, 0C, 68, 6E, 1F, 41, 00, FF, 15, 38, 41...
 
[+]

Entropy:
7.9989

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
73 KB (74,752 bytes)

The file controlnowagentsetup.exe has been seen being distributed by the following URL.

Scan controlnowagentsetup.exe - Powered by Reason Core Security