e5372s.fwindo.21.271.11.00.1151.jalantikus.com.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from jalantikus.com.
MD5:
9b23ab8225854fc37c82020293b8609e

SHA-1:
9fb8149ea6bedbf9cd6116bb41ec1e03d712d080

SHA-256:
9f06e00f8421499ef29d1b3ba775b1d6eb528bda85235c98e8f24ef365d2a567

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 1:46:50 AM UTC  (today)

File size:
2.1 MB (2,213,360 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\e5372s.fwindo.21.271.11.00.1151.jalantikus.com.exe

File PE Metadata
Compilation timestamp:
4/21/2013 11:28:01 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:/owx6TgCi4yPhs+nq4PEDR8Bm+QpPW5lNOBvLxuHx6:/owxPCifnPEl8bQpPWPNOBvL46

Entry address:
0x22DB3

Entry point:
E8, A7, 74, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 20, 53, 33, DB, 39, 5D, 0C, 75, 1D, E8, 1C, 17, 00, 00, 53, 53, 53, 53, 53, C7, 00, 16, 00, 00, 00, E8, 67, 4F, 00, 00, 83, C4, 14, 83, C8, FF, EB, 4D, 8B, 45, 08, 3B, C3, 74, DC, 56, 89, 45, E8, 89, 45, E0, 8D, 45, 10, 50, 53, FF, 75, 0C, 8D, 45, E0, 50, C7, 45, E4, FF, FF, FF, 7F, C7, 45, EC, 42, 00, 00, 00, E8, 42, 76, 00, 00, 83, C4, 10, FF, 4D, E4, 8B, F0, 78, 07, 8B, 45, E0, 88, 18, EB, 0C, 8D, 45, E0, 50, 53, E8, C3, 74, 00, 00, 59...
 
[+]

Code size:
211 KB (216,064 bytes)

The file e5372s.fwindo.21.271.11.00.1151.jalantikus.com.exe has been seen being distributed by the following URL.