fl12i.exe

MD5:
cc3e9e9cd79ade7cf518ff8bc8842852

SHA-1:
77295bef53c9fda95a76a4ade5f110ca7f544016

SHA-256:
1b6523ccb66e310a4f7c72bc985cea96a180439480a63d0beea9a80fd1da6338

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/24/2024 4:36:32 AM UTC  (today)

Scan engine
Detection
Engine version

IKARUS anti.virus
Virus.Win32.Cayen
t3scan.1.8.9.0

Kaspersky
Trojan.Win32.Obfuscated
14.0.0.1763

Trend Micro House Call
Suspicious_GEN.F47V0415
7.2.190

File size:
840 KB (860,203 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\fl12i.exe

File PE Metadata
Compilation timestamp:
10/22/2004 6:55:31 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
6.0

CTPH (ssdeep):
12288:w/rsYUsktUrxefrWYhXCtktY+wifv/E9tozV7KH3vjgXZ1urMvdv5jYakAG0ZqL:CrsYTeeOv/u8sH3MXTldlYVAG0G

Entry address:
0x67F80

Entry point:
55, 8B, EC, 6A, FF, 68, A8, 39, 4A, 00, 68, 1C, C7, 46, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, C4, F0, 53, 56, 57, 89, 65, E8, FF, 15, A0, E2, 6C, 00, A3, BC, A3, 6B, 00, A1, BC, A3, 6B, 00, C1, E8, 08, 25, FF, 00, 00, 00, A3, C8, A3, 6B, 00, 8B, 0D, BC, A3, 6B, 00, 81, E1, FF, 00, 00, 00, 89, 0D, C4, A3, 6B, 00, 8B, 15, C4, A3, 6B, 00, C1, E2, 08, 03, 15, C8, A3, 6B, 00, 89, 15, C0, A3, 6B, 00, A1, BC, A3, 6B, 00, C1, E8, 10, 25, FF, FF, 00, 00, A3, BC, A3, 6B, 00, 6A, 00, E8, 7D...
 
[+]

Entropy:
5.8550

Developed / compiled with:
Microsoft Visual C++

Code size:
640 KB (655,360 bytes)

The file fl12i.exe has been seen being distributed by the following URL.

Scan fl12i.exe - Powered by Reason Core Security