f101v10b5810.exe

Fortres Grand Installer

Fortres Grand Corporation

This is a setup and installation application. The file has been seen being downloaded from cdn.fortresgrand.com.
Publisher:
Fortres Grand Corporation  (signed and verified)

Product:
Fortres Grand Installer

Description:
Fortres Grand Setup Launcher

Version:
1, 0, 0, 1

MD5:
8503c34bea55c1d201562a726c540fd8

SHA-1:
99a137ba46bdc8397398eb4d9265a220db600415

SHA-256:
5ee2d38f1f1bd96266bacac627a575597f2a0412eee53e850f7080885750f2af

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 11:30:33 PM UTC  (a few moments ago)

File size:
23.7 MB (24,814,368 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright © 2007 Fortres Grand Corporation

Original file name:
MSIStub.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\f101v10b5810.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/19/2013 10:04:30 AM

Valid to:
3/19/2016 10:04:30 AM

Subject:
E=trust@fortresgrand.com, CN=Fortres Grand Corporation, O=Fortres Grand Corporation, L=Plymouth, S=IN, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121B11AB04C88D9CA4ABCC9E92D1D4FFEF1

File PE Metadata
Compilation timestamp:
11/17/2015 2:04:20 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
393216:XDQIqd4kqwTkJkjUagHY26EMB6/6v5RIbPc72oA0c/flIh2LZSzW:TQIqddqwQJyXg4Q47vwPSAr/tIh2n

Entry address:
0x827E

Entry point:
E8, 1B, 05, 00, 00, E9, 80, FE, FF, FF, 55, 8B, EC, 6A, 00, FF, 15, 98, B1, 41, 00, FF, 75, 08, FF, 15, 94, B1, 41, 00, 68, 09, 04, 00, C0, FF, 15, 2C, B1, 41, 00, 50, FF, 15, 9C, B1, 41, 00, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 6A, 17, E8, 0A, 16, 01, 00, 85, C0, 74, 05, 6A, 02, 59, CD, 29, A3, E0, 5C, 42, 00, 89, 0D, DC, 5C, 42, 00, 89, 15, D8, 5C, 42, 00, 89, 1D, D4, 5C, 42, 00, 89, 35, D0, 5C, 42, 00, 89, 3D, CC, 5C, 42, 00, 66, 8C, 15, F8, 5C, 42, 00, 66, 8C, 0D, EC, 5C, 42, 00, 66, 8C, 1D, C8...
 
[+]

Entropy:
7.8511  (probably packed)

Code size:
103 KB (105,472 bytes)

The file f101v10b5810.exe has been seen being distributed by the following URL.

http://cdn.fortresgrand.com/.../f101v10b5810.exe

Scan f101v10b5810.exe - Powered by Reason Core Security