dat0613.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from 172.19.66.40 and multiple other hosts.
MD5:
0b19a5b4278aad269543eea3ae77087d

SHA-1:
10a99db832a0a8a794691f89dfb52d05f1ba52ee

SHA-256:
ade89422c294f376c3618f6f53cccf4f1dedca76e390722de7cc57ebec847585

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 1:50:07 PM UTC  (today)

File size:
13.9 MB (14,627,542 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\dat0613.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
393216:GvYcMuWzYJHziQ1kskcBEn2fUpAW9bmNoitpoRFaYPZ:yYcMuWzYRB3B22CXlSsFaiZ

Entry point:
6D, 20, E6, F5, 7D, 46, 00, 59, 22, B9, 86, 1C, D5, 68, 85, 00, 00, 00, 00, 00, 7D, 00, 00, 00, 00, 00, 00, 00, E0, D7, C0, F3, 00, 40, 57, 18, EA, C7, C0, AA, 29, C5, 41, 4B, CE, 1A, 26, A6, 03, FB, 21, DF, 40, 48, 6C, FC, F3, 01, 81, 5D, 88, CF, 83, F1, D0, E8, 1A, A9, 01, 18, D5, B4, EA, E2, 3F, DB, EE, A8, D4, E1, 65, 93, 2B, D7, 9A, A8, AA, 39, 79, BE, 18, 5A, B8, 0E, 83, 29, 19, 83, 6F, AE, 4F, 83, 3E, 5F, C3, 70, 3D, C4, C4, 02, F1, 9A, 6A, 81, 44, D1, 46, CA, E7, EE, 67, C0, 9D, 80, 4D, 96, FD, BB...
 
[+]

The file dat0613.exe has been seen being distributed by the following 6 URLs.

http://172.19.66.40/.../dat0613.exe

http://101.110.118.69/dhd29up7zcdyt.cloudfront.net/download/.../dat0613.exe

http://113.171.224.208/.../dat0613.exe

http://113.171.224.169/.../dat0613.exe

http://113.171.224.245/.../dat0613.exe

Scan dat0613.exe - Powered by Reason Core Security