copiaris_234.exe

Copiaris

Moon Software

This is a setup and installation application. The file has been seen being downloaded from www.moonsoftware.com.
Publisher:
Moon Software  (signed and verified)

Product:
Copiaris

Description:
This installer database contains the logic and data required to install Copiaris.

Version:
2.3.4

MD5:
c40d70d87cca23095b5a22974ef08d0c

SHA-1:
31e36264500a1b74d7f04c71d8ef6a645421daf0

SHA-256:
fa108953bc0fdf673216f59cb4657330fe50c462a65303279948d737c55a6f74

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/8/2024 2:11:30 PM UTC  (today)

Scan engine
Detection
Engine version

Vba32 AntiVirus
Downloader.Agent
3.12.26.3

Zillya! Antivirus
Trojan.Agent.Win32.491146
2.0.0.2166

File size:
6.2 MB (6,534,856 bytes)

Product version:
2.3.4

Copyright:
Copyright (C) 2014 Moon Software

Original file name:
Copiaris_2.3.4.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/29/2014 5:30:00 AM

Valid to:
3/30/2015 5:29:59 AM

Subject:
CN=Moon Software, O=Moon Software, STREET=Suur-Aia 18-21, L=Paide, S=-, PostalCode=72711, C=EE

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00862414B7037E6853EA9FAFCA7CB40FD4

File PE Metadata
Compilation timestamp:
6/17/2014 7:35:48 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:FDQSY8G582uX/YAN1otsTlQnK0UatmZKRw:uD582KXouIKhIRw

Entry address:
0xC831C

Entry point:
E8, 41, CC, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 56, 8B, F0, 33, DB, 3B, F3, 75, 1E, E8, 5D, 4E, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, C5, D5, FF, FF, 83, C4, 14, 8B, C6, E9, C2, 00, 00, 00, 57, 39, 5D, 0C, 77, 1E, E8, 39, 4E, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, A1, D5, FF, FF, 83, C4, 14, 8B, C6, E9, 9D, 00, 00, 00, 33, C0, 39, 5D, 14, 66, 89, 06, 0F, 95, C0, 40, 39, 45, 0C, 77, 09, E8, 0A, 4E, 00, 00, 6A, 22, EB, CF, 8B, 45, 10, 83, C0, FE, 83, F8, 22, 77...
 
[+]

Entropy:
7.8091  (probably packed)

Code size:
1020.5 KB (1,044,992 bytes)

The file copiaris_234.exe has been seen being distributed by the following URL.

http://www.moonsoftware.com/download?copiaris

Scan copiaris_234.exe - Powered by Reason Core Security