fprogwin.exe

EdariSoft

This is a setup program which is used to install the application. The file has been seen being downloaded from doc-0s-0s-docs.googleusercontent.com.
Publisher:
EdariSoft

Description:
AL-Edari

Version:
6.1.2005.165

MD5:
778a8cca98b12581da07836561228117

SHA-1:
1e7e3f544b32dfef9e0588f84adb84e0d9354406

SHA-256:
910e17e721c780cc7317476443b749c3bfacd4238822da468dc735379fd18329

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/2/2024 5:25:58 PM UTC  (today)

File size:
2.4 MB (2,531,328 bytes)

Product version:
6.1.0.0

Copyright:
Copyright 1998-2005, EdariSoft, Damascus, Syria

File type:
Executable application (Win32 EXE)

Language:
Arabic (Syria)

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:2795VYEqgYazOaXDyk8uNuVbctI+0Dl1/DPwawl:i9T7qg6azFUVbMQ3ql

Entry address:
0x818770

Entry point:
83, 3D, 80, DB, C0, 00, 00, 53, 56, 57, 55, 0F, 85, 29, 07, 00, 00, FF, 05, 80, DB, C0, 00, BE, 04, 00, 00, 00, BF, FC, FF, FF, FF, FF, 15, E4, 71, C1, 00, BB, 08, 00, 00, 00, 01, 05, E4, 68, C1, 00, FF, 15, E0, 71, C1, 00, 31, 05, E4, 68, C1, 00, 81, 0D, E4, 68, C1, 00, 01, 00, 20, 00, 81, 25, E4, 68, C1, 00, FF, FF, FF, 3F, A1, 3C, EC, C0, 00, 8B, 0D, 3C, EC, C0, 00, 66, 8B, 00, 66, A3, 48, EC, C0, 00, 66, 8B, 51, 02, 66, 89, 15, 4C, EC, C0, 00, 8B, 41, 04, A3, 40, EC, C0, 00, 01, 1D, 3C, EC, C0, 00, 33...
 
[+]

Entropy:
7.8813  (probably packed)

Code size:
34 KB (34,816 bytes)

The file fprogwin.exe has been seen being distributed by the following URL.

Scan fprogwin.exe - Powered by Reason Core Security