gcm4setup.exe

Setup

MetaQuotes Software Corp.

This is a setup and installation application. This is the uninstaller utility registered in the Windows Control Panel for the program GCM MetaTrader by MetaQuotes Software Corp.. The file has been seen being downloaded from uploaded.gcmforex.com.
Publisher:
MetaQuotes Software Corp.  (signed and verified)

Product:
Setup

Version:
5.0.0.1026

MD5:
ec4a877166295b0ca9af7350c8d56817

SHA-1:
ddb49ea9cfe22f34431df23ace5464d15dd69756

SHA-256:
203140b7c89c3b94d2af5cb7fc6a377af329e27554281fc9fa10c8c9549c6339

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 3:45:21 PM UTC  (today)

File size:
464.3 KB (475,408 bytes)

Product version:
5.0.0.1026

Copyright:
© 2001-2014, MetaQuotes Software Corp.

Trademarks:
MetaTrader

Original file name:
Setup

File type:
Executable application (Win32 EXE)

Language:
Turkish (Turkey)

Common path:
C:\users\{user}\downloads\gcm4setup.exe

Digital Signature
Authority:
COMODO CA Limited

Valid from:
1/23/2014 2:00:00 AM

Valid to:
1/23/2017 1:59:59 AM

Subject:
CN=MetaQuotes Software Corp., O=MetaQuotes Software Corp., STREET=28 Parliament street, L=Nassau, S=none, PostalCode=none, C=BS

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
6324EFF48E7850635D538AAFF2D614C4

File PE Metadata
Compilation timestamp:
12/8/2014 9:09:56 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
6144:4tyHDQm7gGMS1n3+xD2sfXdnJfQaGDYMpbkEulbTUz1FbkSVdSlS6wZ8rpyyL:4tyjV/zh+x1PdJfSYHflbsbjVdk68lL

Entry address:
0x1357A0

Entry point:
60, BE, 00, B0, 4F, 00, 8D, BE, 00, 60, F0, FF, 57, EB, 0B, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89, C5, EB, 0B, 01, DB, 75, 07, 8B...
 
[+]

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.24

Code size:
236 KB (241,664 bytes)

Program Uninstaller
Program name:
GCM MetaTrader

Display publisher:
MetaQuotes Software Corp.

Display version:
4.00

Uninstall string:
C:\Program Files (x86)\GCM MetaTrader\uninstall.exe


The file gcm4setup.exe has been seen being distributed by the following URL.

Scan gcm4setup.exe - Powered by Reason Core Security