ecsel6_setup.exe

Structural Engineering Library Build 6.16.6.7

ENERCALC

This is a setup and installation application. The file has been seen being downloaded from enercalc.cachefly.net.
Publisher:
ENERCALC, INC.  (signed by ENERCALC)

Product:
Structural Engineering Library Build 6.16.6.7

Description:
ENERCALC Installer - Build 6.16.6.7

Version:
6.16.6.7

MD5:
8d3f070e637b93fedf587f5de89be8be

SHA-1:
d55b6ee27dfb84d483b9c1a71421789f275eefef

SHA-256:
64993c8b66c594540c28abfe64f4aa8e8bd552f4e72bb7397b3c4ccc6d410f21

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/14/2025 11:01:57 PM UTC  (a few moments ago)

File size:
227.3 MB (238,344,840 bytes)

Product version:
6.16.6.7

Copyright:
1983-2016

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\ecsel6_setup.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
1/30/2016 10:00:00 AM

Valid to:
2/22/2019 9:59:59 AM

Subject:
CN=ENERCALC, O=ENERCALC, L=Corona del Mar, S=California, C=US

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
4B7A899A376C3227FDA54966A7EE78C6

File PE Metadata
Compilation timestamp:
6/12/2016 8:52:51 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6291456:p2DO7ZFIPWzDxJKAPuoJVHMuWQ5YGn5oU6EqxeQHlOhsngpwemJSO:KO7wOzDGAjJVHJWQ5tKE6eqngpwetO

Entry address:
0x1CF0

Entry point:
55, 8B, EC, 83, EC, 54, FF, 15, 74, 20, 40, 00, 89, 45, B4, 8B, 45, B4, 0F, BE, 08, 83, F9, 22, 75, 3F, 8B, 55, B4, 83, C2, 01, 89, 55, B4, 8B, 45, B4, 0F, BE, 08, 85, C9, 74, 16, 8B, 55, B4, 0F, BE, 02, 83, F8, 22, 74, 0B, 8B, 4D, B4, 83, C1, 01, 89, 4D, B4, EB, E0, 8B, 55, B4, 0F, BE, 02, 83, F8, 22, 75, 09, 8B, 4D, B4, 83, C1, 01, 89, 4D, B4, EB, 16, 8B, 55, B4, 0F, BE, 02, 83, F8, 20, 7E, 0B, 8B, 4D, B4, 83, C1, 01, 89, 4D, B4, EB, EA, 8B, 55, B4, 0F, BE, 02, 85, C0, 74, 16, 8B, 4D, B4, 0F, BE, 11, 83...
 
[+]

Entropy:
7.9771

Developed / compiled with:
Microsoft Visual C++

Code size:
4 KB (4,096 bytes)

The file ecsel6_setup.exe has been seen being distributed by the following URL.

Scan ecsel6_setup.exe - Powered by Reason Core Security