couchpotato-3.0.0.win32.installer.exe

CouchPotato

Your Mom

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
Your Mom

Product:
CouchPotato

Description:
CouchPotato Setup

MD5:
4951a0293f221a228e6cefc14b14afbd

SHA-1:
902f397f641da1dce1f828043de406ebd44c7cdb

SHA-256:
90f021a5fad1d640d4f7f4df03070461dceca977700dad939d1a5b61c9d032ad

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 1:37:56 PM UTC  (today)

File size:
18.3 MB (19,144,831 bytes)

Product version:
2

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\downloads\couchpotato-3.0.0.win32.installer.exe

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:I2t902TLnqQnQKnHggqfQWsALrqrkTyJw4jc0rvt6HTq5TrRwmrjEXwc:I2t9/JQyHnoQlkTyi4j3rvt6zq5xdrjO

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Entropy:
7.9765

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file couchpotato-3.0.0.win32.installer.exe has been seen being distributed by the following 10 URLs.

http://dw.uptodown.com/dwn/oadcuJ82VMsXZr23kqqaisc0Vq7yGxMDTUrZrLNtPAhrSkyH5vfwSUBUAjuBoJrisrVOZscoXODkbHB8jZuefzuMxx6tYUsfMbMp2Dg43GLUVtFBQwW6GGXUx2BZPBT3/Ol8Vruo1jXI6AQ8XODdnPmUWEkOXSpPxWSVFW_Uad4SRQt_nmpGbzvf59-bfffbmNJv3Rd1Z87-CNcMg7KRseIgLx7EEQ1mOurbac14jWlFxCNps2IPdNScDkfIAjmHz/.../

https://dw.uptodown.com/dwn/lHGb7vhgAOMx9aeb0ZcHvbplNy4jLcLIUzSUFa3E1y99jZvIgXUMClyWvdi6rmU7H6HLtyRTiwHvgWbslSHlw2V1z-csWIIrv7NVcm2FvmxcYoGQZn-h7m3EMOl0oMVU/nZoVw5_F_igXjbfQgLC6gcuoXR1hlWLoW7E6Yg_9qm1kOcdkknFGyrQDyr7RTnC789PQd1dZBT74k-rTHWE5XYsSBSrp5LUMlaYxxNTdqsvROVBmJWyWIEL5_URZIVp0/0zLHJ71hGHVzR9CpoTcs7gNK6PUaCM2OjSPjbVxs2SW3-EFBMYUrJsCFJGWqh2pLT2-Rgj0hcYrYkLiq6DYTd3SiItU9iLcQzpHXciJh3qoR0mknKQvh6s0_OQ3O0k83/.../

https://dw.uptodown.com/dwn/XJdvrQHVELl3bHGbhD_5nwChtEZfyKGAZ4K2Mp8KDOJYsR7yZV7sRi3y1ptSQskq01jmd60Kpb_XVbqTFnwlzAzfv4FXmP9tBj_2sNAAfoo7lx2Kl_C1eWpndKxnmrfI/XSzoDJ0tIaoX6Ndbnh-RwKB2q5gJLjJC4DUvmM__c8JD-7agqAqxCewQw0ipM2eHhEsZwcOlvSJ5dYYrs4fmDdQUXjrk4StOpbalKT3cCIOVp_uzBCRN-F9SimhtZ3Z2/.../

https://dw.uptodown.com/dwn/HsG-oRJ0_uGYNonMcoyVoYZB1uMFxYij-8A92QvTOVayOUZI_mZO-IOYrz8XhzrphXsWfuVpIbpttmiYMQBN9HnVpUI79xag-KouvDyWydbU8peP0nwiuvotRzDMZ3K0/9HDwBih8k7VKkrjv-q087Y2PM7b-bsvxr-jx8yoI9DrBb5EzM9nBM-jOOZSwvFPtGul7kYFOaTVtl0eoogJYqSpHj_CxVng9OXHmPezmypYEQhw-6ORJPbyKAveZogD9/IWWp527XphA5LNNBUK1eyOw6s_Q4NpOVsgAAueMQv1WzpZd2FrI5qsJ28fz6C6GXXtmjwX4tIyQATWdmReggMpav_M6z9jrUX-3eU_6c8xINFQMDezSHfWBCKQnteNMT/.../

https://dw.uptodown.com/dwn/cEjwPPXe-VJzoXkcoX1-3XUQjEqDlI3YBUbutBs-VX76e8yXEyQDgoml-t1WMn65XyRfCNwrRYO-_g0AUsD43m8ooTO0DVr_0IAvpea-nGF33NMkrP-fLLGF7CO7yq5o/KNw3UfFAQwKYdbTNwpaKPq5ad_uCmB2rzxtoo7MfUV0IPBbScIfSV5rDAZEBM2htzsgRVIZi-MvvYdgp_HOJkpBKo3Z6gmgExrbxYgpq9KBsNamvwYKDMrm2B_8kXO04/QpTnUEn_ZdW46yLrnkOFfxnvvKTOuAj-nTpoN9FUw-rdzuLd6_P-18rBDFB6a6CR7uUVJBfL7hDuRRLgImMSWJFglgAsOjZUedbnoo_qCn0DaFrUXSsxWGIytczx2ArE/.../

Scan couchpotato-3.0.0.win32.installer.exe - Powered by Reason Core Security