fax_0915_win_32_setup_e.exe

7-Zip

Igor Pavlov

The program is a setup application that uses the 7z Setup installer. The file has been seen being downloaded from www.canon.ca.
Publisher:
Igor Pavlov

Product:
7-Zip

Description:
7z SFX

Version:
9.20

MD5:
9c029c290e8b10171063f215ea3689ac

SHA-1:
4d65e8ecc190863c634c646a400bab58b58dfdbe

SHA-256:
03dce925dabe3f8e144b737fca5510153f736efeab3411abd34e10bc6fa68052

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 9:44:03 PM UTC  (today)

File size:
13.5 MB (14,129,950 bytes)

Product version:
9.20

Copyright:
Copyright (c) 1999-2010 Igor Pavlov

Original file name:
7z.sfx.exe

File type:
Executable application (Win32 EXE)

Installer:
7z Setup

Language:
English (United States)

Common path:
C:\users\{user}\downloads\fax_0915_win_32_setup_e.exe

File PE Metadata
Compilation timestamp:
11/18/2010 8:27:33 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:zGAT/usFL3VQuSi0ruewSWbUzbDDu3l4hQJnL:V1BVQuX0roozbcikL

Entry address:
0x1D262

Entry point:
60, C6, C5, 29, 0F, A5, D2, 8D, 0D, 9C, 24, 68, 57, F2, 46, D0, F1, FF, CA, 47, F7, C0, BE, 0C, 63, 7E, 81, D2, 61, 7A, C3, C6, 0F, CB, 0F, CB, E8, 00, 00, 00, 00, 59, D2, F0, 55, 51, 81, FB, 08, C0, 00, 00, 75, 05, C0, E7, 37, D1, FA, 0F, CB, 1A, E3, 68, 0F, 89, 2B, 00, 81, FD, B3, AE, 00, 00, 72, 04, 8A, F6, D2, C6, 86, F2, 0F, BB, C3, 0F, C1, FA, 0F, C0, E4, 22, D0, 85, ED, 0F, BE, FD, 88, F0, 0F, AD, FF, 69, DE, 59, A5, 5C, 95, 1A, FB, 2B, D2, 0F, C1, F6, F6, C6, 2A, 81, EA, 92, AC, F5, FF, 81, FF, 67...
 
[+]

Entropy:
7.9990  (probably packed)

Code size:
124.5 KB (127,488 bytes)

The file fax_0915_win_32_setup_e.exe has been seen being distributed by the following URL.

Scan fax_0915_win_32_setup_e.exe - Powered by Reason Core Security