e220 simlock_unlock.exe

CardLock_UnLock 应用程序

This is a setup program which is used to install the application. The file has been seen being downloaded from s8289.chomikuj.pl and multiple other hosts.
Product:
CardLock_UnLock 应用程序

Description:
CardLock_UnLock Microsoft 基础类应用程序

Version:
1, 0, 0, 1

MD5:
9fdfdf272e2bf0add7a21fe5fa5209d3

SHA-1:
095795ce21bbceba9de5422fb55d37640daa54d8

SHA-256:
4759d9451c284e904973035948c993c721c8d8df16884295baf41e56f801fb67

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/12/2025 9:11:32 PM UTC  (today)

File size:
24 KB (24,576 bytes)

Product version:
1, 0, 0, 1

Copyright:
版权所有 (C) 2006

Original file name:
CardLock_UnLock.EXE

File type:
Executable application (Win32 EXE)

Language:
Chinese

File PE Metadata
Compilation timestamp:
8/22/2006 3:32:06 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
192:DSIlt1Ln7UteAs8edcbWyboLxaBYzfX1EFBBP1oynWHepfFc2q:LRLotet6Yxxqd1w+pI

Entry address:
0x2310

Entry point:
55, 8B, EC, 6A, FF, 68, 90, 35, 40, 00, 68, 96, 24, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, 24, 32, 40, 00, 59, 83, 0D, A4, 44, 40, 00, FF, 83, 0D, A8, 44, 40, 00, FF, FF, 15, E4, 31, 40, 00, 8B, 0D, 98, 44, 40, 00, 89, 08, FF, 15, E8, 31, 40, 00, 8B, 0D, 94, 44, 40, 00, 89, 08, A1, EC, 31, 40, 00, 8B, 00, A3, A0, 44, 40, 00, E8, 16, 01, 00, 00, 39, 1D, B0, 43, 40, 00, 75, 0C, 68, 92, 24, 40, 00, FF, 15, F0, 31...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
8 KB (8,192 bytes)

The file e220 simlock_unlock.exe has been seen being distributed by the following 4 URLs.

http://s8289.chomikuj.pl/File.aspx?e=krFe1p9hNhLeDNMCAtFtJ7IbYGKxAbBRKJoHozZX2FvyDBnOSprTGUQ4sPcXyflMB7iv6Kj1pkBYxR-lvEhSL-fVLEhthEVu2aLIz1s9CEQaehUJEgKpbLHS5-Rn17sW53RKaVMz-56eSXkhNDUKGA&pv=2

http://s10582.chomikuj.pl/File.aspx?e=krFe1p9hNhLeDNMCAtFtJ2dTFJ_yCB-QZanvXsFUh-tkNZi4mrVgEwLulqiFuNUdxbz7quJGR1GwsiqX998RcLQBLXbEHCy93427ibxLCqhx-4Hd7fuCml-h23DnEUtHZM0emBHUOazv4DuUlWsF7Q&pv=2

Scan e220 simlock_unlock.exe - Powered by Reason Core Security