double.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from mmm.webz.cz.
MD5:
587a0cb31307fae99b0327a1ff8d51d2

SHA-1:
7ba35837516e41d83b35f7776a66af79397526c6

SHA-256:
a7edad211ad4644623b2394f9676cec7253fcb81263a947cad7ec1d2cfb01426

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/26/2024 5:29:54 AM UTC  (today)

File size:
12.7 KB (12,976 bytes)

File type:
Executable application (Win16 EXE)

Common path:
C:\users\{user}\downloads\double.exe

File PE Metadata
OS version:
55808.4

OS bitness:
Win16

Linker version:
4.0

CTPH (ssdeep):
384:a4XETMt6nqyY3JkNDVuxqOO5GhgNWhfxZ2:ZXDt6q/370OO5+ck2

Entry address:
0x47B00

Entry point:
4D, 5A, B0, 00, 1A, 00, 64, 01, 5B, 00, F9, 11, F9, 11, C9, 12, 00, 20, 00, 00, B0, 15, 00, 00, 1C, 00, 00, 00, 09, 00, 00, 00, 6D, 00, 00, 00, 77, 00, 00, 00, 7F, 00, 00, 00, 84, 00, 00, 00, 99, 00, 00, 00, A1, 00, 00, 00, A6, 00, 00, 00, B7, 00, 00, 00, C4, 00, 00, 00, D8, 00, 00, 00, E2, 00, 00, 00, EA, 00, 00, 00, F2, 00, 00, 00, FA, 00, 00, 00, 02, 01, 00, 00, 07, 01, 00, 00, 29, 01, 00, 00, 3F, 01, 00, 00, 5A, 01, 00, 00, 70, 01, 00, 00, 8B, 01, 00, 00, A1, 01, 00, 00, 00, 03, 00, 00, 0F, 03, 00, 00...
 
[+]

Code size:
280 KB (286,720 bytes)

The file double.exe has been seen being distributed by the following URL.

Scan double.exe - Powered by Reason Core Security