funpack.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.educarm.es.
MD5:
4b049816ee4e17765f829b480fe2a971

SHA-1:
f4e1da7d55c6bee924ee66a443db4c881c3a2077

SHA-256:
1076f74f67be0fb037c5506fc1507027e0a763f451237984991ab3a9f1b22111

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 8:49:02 PM UTC  (today)

File size:
1.7 MB (1,813,317 bytes)

File type:
Executable application (Win16 EXE)

Common path:
C:\users\{user}\downloads\funpack.exe

File PE Metadata
OS version:
85.15424

OS bitness:
Win16

Subsystem:
Windows Console

Linker version:
2.0

CTPH (ssdeep):
24576:u4782y68NG//qR3m7LhXz/l7MX22a79Da60RxfnVhNLTnIOrA4VhOC/vHWua3yGw:l7S68Nk/oyVj/lpFDafnVLLt2C2iR

Entry address:
0x10400FE

Entry point:
4D, 5A, A1, 00, 03, 00, 00, 00, 20, 00, 00, 00, FF, FF, 07, 00, 00, 01, 65, 40, 00, 00, 00, 00, 40, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9428  (probably packed)

Code size:
192 KB (196,610 bytes)

The file funpack.exe has been seen being distributed by the following URL.

Scan funpack.exe - Powered by Reason Core Security