csc7.0.296.exe

Fortres Grand Installer

Fortres Grand Corporation

This is a setup and installation application. The file has been seen being downloaded from cdn.fortresgrand.com.
Publisher:
Fortres Grand Corporation  (signed and verified)

Product:
Fortres Grand Installer

Description:
Fortres Grand Setup Launcher

Version:
1, 0, 0, 1

MD5:
422463150eb3ddcf4a44db649e5fe6f7

SHA-1:
34c3e60a4fca576b5da2f98b2ad205ce35b2ed14

SHA-256:
6c4bc7839112733ba08096f4d034f4f7da3a9e4477fa5b6ba05f6a19ad282c90

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 5:45:03 PM UTC  (today)

File size:
6.5 MB (6,785,632 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright © 2007 Fortres Grand Corporation

Original file name:
MSIStub.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\csc7.0.296.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/5/2016 11:20:32 AM

Valid to:
2/5/2019 11:20:32 AM

Subject:
CN=Fortres Grand Corporation, O=Fortres Grand Corporation, STREET=900 Lincolnway E, L=Plymouth, S=Indiana, C=US, OID.1.3.6.1.4.1.311.60.2.1.2=Indiana, OID.1.3.6.1.4.1.311.60.2.1.3=US, SERIALNUMBER=1994110596, OID.2.5.4.15=Private Organization

Issuer:
CN=GlobalSign Extended Validation CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11217BE18B4D3B6A8E8AF2483B39A4BEE61F

File PE Metadata
Compilation timestamp:
3/10/2016 9:54:08 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
98304:ONWYNAIkcPeyOybhtBg/C87rzt05g1sPYNAakcf6zHCFcQICkw3QvjU8tqiaAAnw:CPeQHBg/5rztf1FPRfGI8PaAUKIM

Entry address:
0x8335

Entry point:
E8, 54, 05, 00, 00, E9, 80, FE, FF, FF, 55, 8B, EC, 6A, 00, FF, 15, 98, B1, 41, 00, FF, 75, 08, FF, 15, 94, B1, 41, 00, 68, 09, 04, 00, C0, FF, 15, 2C, B1, 41, 00, 50, FF, 15, 9C, B1, 41, 00, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 6A, 17, E8, E3, 15, 01, 00, 85, C0, 74, 05, 6A, 02, 59, CD, 29, A3, E0, 5C, 42, 00, 89, 0D, DC, 5C, 42, 00, 89, 15, D8, 5C, 42, 00, 89, 1D, D4, 5C, 42, 00, 89, 35, D0, 5C, 42, 00, 89, 3D, CC, 5C, 42, 00, 66, 8C, 15, F8, 5C, 42, 00, 66, 8C, 0D, EC, 5C, 42, 00, 66, 8C, 1D, C8...
 
[+]

Entropy:
7.8067  (probably packed)

Code size:
103 KB (105,472 bytes)

The file csc7.0.296.exe has been seen being distributed by the following URL.

Scan csc7.0.296.exe - Powered by Reason Core Security