ellinia.exe

Launcher

This is a setup program which is used to install the application. The file has been seen being downloaded from fs06n5.sendspace.com and multiple other hosts.
Product:
Launcher

Version:
1.1.5616.30435

MD5:
7da704ee3208d838485d8d116b666285

SHA-1:
2a72b2c5f2667d0c35dd3838e70b26f7702a58ce

SHA-256:
f5714e80b54eb92cb1b419b5b8d14364586b0f5aed33f81983b1bc0180d3a060

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/5/2024 7:28:29 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Packed
1.3.0.6379

File size:
2.5 MB (2,628,608 bytes)

Product version:
1.1.5616.30435

Original file name:
Redirector.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
5/18/2015 2:54:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
49152:YtXA2f0bkPxc7pDlVhdfITA/7cMn2/5vLw42g7oeO1SGk9k+AsH:YtXx0bUgRlVGA/IM1Yg1Sv

Entry address:
0x28808A

Entry point:
FF, 25, 80, 80, 68, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9904  (probably packed)

Code size:
29 KB (29,696 bytes)

The file ellinia.exe has been seen being distributed by the following 2 URLs.

https://fs06n5.sendspace.com/dl/635f0cf4a4d63634281992670ec956ab/55c348b708c141a0/.../Ellinia.exe

Scan ellinia.exe - Powered by Reason Core Security