dotNetFx40_Full_setup.exe

Microsoft .NET Framework 4

Microsoft Corporation

This is a setup and installation application. The file has been seen being downloaded from go.vitzo.com.
Publisher:
Microsoft Corporation

Product:
Microsoft .NET Framework 4

Description:
Microsoft .NET Framework 4 Setup

Version:
4.0.30319.01

MD5:
8cc15aa206c00f3eee252e23bed0b859

SHA-1:
3b353193ec504cae3c3d5781eb441b5f7464d9d6

SHA-256:
d044225d481f18b3d6a50f7a258c370373a2e39d39ed37cb21461e59b5721fda

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/6/2024 8:28:59 AM UTC  (today)

File size:
940.6 KB (963,144 bytes)

Product version:
4.0.30319.01

Copyright:
© Microsoft Corporation. All rights reserved.

Original file name:
dotNetFx40_Full_setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\dotnetfx40_full_setup.exe

File PE Metadata
Compilation timestamp:
10/9/2009 11:27:34 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:/tx4x8xAx/KGRdUcyezFSjaBHFaNlsqK5/oh6iZf1LUXw/vxNI:X4x8xqhGexm8FCspg0iZf1LUXD

Entry address:
0x191C6

Entry point:
FE, C0, 68, C2, 08, A0, 00, 0F, AF, D5, 3B, DA, 75, 06, 8D, 05, 2B, 6F, 78, 41, FF, CF, 75, 0D, C7, C7, BD, 13, 61, FD, 46, C7, C5, 3B, F8, BC, 0B, 87, D5, 8D, 3D, 7C, 93, 52, 54, 68, FE, 0A, 00, 00, FE, CD, 59, BA, F3, 3F, 40, F6, 81, F1, 66, 01, 00, 00, 2A, DE, 80, E8, 86, 0F, BE, FA, 48, 68, FF, C2, 09, 00, 3D, 01, 46, 00, 00, 76, 02, 0F, CF, 5E, 87, DB, 81, EE, D4, D4, 00, 00, 69, C2, 36, 4E, 0E, 7D, 8D, 2E, F7, C5, C6, 34, 5B, 37, 81, ED, 42, DD, 08, 00, 69, F5, 43, 4F, 6B, D9, 55, 2C, 3D, 5A, 69, E8...
 
[+]

Entropy:
7.8726  (probably packed)

Code size:
161.5 KB (165,376 bytes)

The file dotNetFx40_Full_setup.exe has been seen being distributed by the following URL.

Scan dotNetFx40_Full_setup.exe - Powered by Reason Core Security