free-jigsaw-puzzles.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.tibosoftware.com.
MD5:
1fedebab21c4e4a907dcfa5f5d907e89

SHA-1:
c79e7674df18a6207af8958df0393751fe252a11

SHA-256:
4ad3cb17bc7a51a5c0f887492874cf127dcd5d34243b999b7a76c6e1d53e1a88

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/17/2024 11:40:25 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.MulDrop
7.1.1

Dr.Web
Trojan.MulDrop4.20681
9.0.1.0247

McAfee
Artemis!1FEDEBAB21C4
5600.6652

NANO AntiVirus
Trojan.Win32.MulDrop4.cznklz
0.30.24.3079

File size:
2.1 MB (2,228,273 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\free-jigsaw-puzzles.exe

File PE Metadata
Compilation timestamp:
6/4/2007 4:20:04 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:GaT5JAoCNLKZhw2FJ8N+hnFFnOEQg+TISJf+ZTJYNsvM0P:GWGHNLKZOmJ8N+hFMbISglYN

Entry address:
0x1DD0

Entry point:
6A, 01, FF, 15, 0C, 70, 40, 00, 50, 6A, 00, 6A, 00, FF, 15, 10, 70, 40, 00, 50, E8, FB, F2, FF, FF, 50, FF, 15, 14, 70, 40, 00, 55, 8B, EC, 8B, 55, 10, 53, 56, 57, 6A, 03, 33, FF, 59, 33, DB, 23, D1, 33, F6, 33, C0, 80, FA, 01, 75, 0A, 6A, 01, B8, 00, 00, 00, 80, 5E, EB, 20, F6, 45, 10, 04, 74, 07, B8, 00, 00, 00, C0, EB, 13, F6, 45, 10, 08, 74, 0A, 6A, 02, B8, 00, 00, 00, C0, 59, EB, 03, 8B, 4D, 10, 39, 7D, 0C, 74, 3C, 3B, C7, 74, 38, 57, 57, 51, 57, 56, 50, FF, 75, 0C, FF, 15, 50, 70, 40, 00, 8B, F0, 83...
 
[+]

Entropy:
7.9722

Packer / compiler:
FASM v1.3x

Code size:
23 KB (23,552 bytes)

The file free-jigsaw-puzzles.exe has been seen being distributed by the following URL.

Scan free-jigsaw-puzzles.exe - Powered by Reason Core Security