controlnowagentsetup.exe

ControlNowAgentInstaller

LogicNow Limited

This is a self-extracting archive and installer. The file has been seen being downloaded from console.us.controlnow.com.
Publisher:
LogicNow Ltd.  (signed by LogicNow Limited)

Product:
ControlNowAgentInstaller

Description:
ControlNow Agent Installer

Version:
1.0.0.0 0. 0. 0

MD5:
ae9ebcf355140c334c9c075e3287bcc3

SHA-1:
9558180697db6de563311cbedf945996b6136f75

SHA-256:
fc2a4e3b5ff043d0d545c23872c6da537e638e68adaa5fca376f40f3fc8ee19b

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/25/2024 1:10:33 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Dropper.Gen
7.11.30.172

ESET NOD32
Detection.Undefined
10.7.0.302.0

F-Secure
Adware.Agent.PJT
11.2016-16-01_7

File size:
7.4 MB (7,708,664 bytes)

Product version:
1.0.0.0 0. 0. 0

Copyright:
Copyright © 2014 LogicNow Ltd.

Original file name:
ControlNowAgentInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\controlnowagentsetup.exe

Digital Signature
Authority:
DigiCert Inc

Valid from:
10/19/2014 7:00:00 PM

Valid to:
12/20/2017 6:00:00 AM

Subject:
CN=LogicNow Limited, O=LogicNow Limited, L=Dundee, S=Angus, C=GB

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
01FD3EC405E1141687A9D4A6AD2CE6F7

File PE Metadata
Compilation timestamp:
7/21/2007 9:33:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:JQ3R+Bktcek3ldbFbMC+Lp1JIL4alotnG/kJbxqUi:JQ3RXiekVBILpgcnw

Entry address:
0x11DE6

Entry point:
55, 8B, EC, 6A, FF, 68, E0, 49, 41, 00, 68, E0, 1D, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, 28, 41, 41, 00, 59, 83, 0D, 64, 97, 41, 00, FF, 83, 0D, 68, 97, 41, 00, FF, FF, 15, 2C, 41, 41, 00, 8B, 0D, 40, 93, 41, 00, 89, 08, FF, 15, 30, 41, 41, 00, 8B, 0D, 3C, 93, 41, 00, 89, 08, A1, 34, 41, 41, 00, 8B, 00, A3, 60, 97, 41, 00, E8, 1C, 01, 00, 00, 39, 1D, 90, 91, 41, 00, 75, 0C, 68, 6E, 1F, 41, 00, FF, 15, 38, 41...
 
[+]

Entropy:
7.9989

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
73 KB (74,752 bytes)

The file controlnowagentsetup.exe has been seen being distributed by the following URL.

Scan controlnowagentsetup.exe - Powered by Reason Core Security