gerador de armas vip.exe

Software

This is a setup program which is used to install the application. The file has been seen being downloaded from fs06n4.sendspace.com.
Publisher:
Software

Product:
Software

Version:
1.0.0.0

MD5:
67428fa0f56d1dc596d6bf690be8f8d0

SHA-1:
1e814f0748e2c188f5afb42bcfc65f12fe762345

SHA-256:
915517f0d4d03453e229c368c314d5981fde94a83f2a7935e49e3b1999012609

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 9:38:29 AM UTC  (today)

File size:
150 KB (153,614 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016

Original file name:
Software.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\gerador de armas vip.exe

File PE Metadata
Compilation timestamp:
6/3/2016 2:13:43 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:FnVw0d98/T2dQ8wT4DUmMa12xE+5zLVNyTvTLvkQlHZ:nw0dYTQQ8w0DrH2xE+xBoT7LvpVZ

Entry address:
0xD5BE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, C7, BA, 51, 57, 00, 00, 00, 00, 02, 00, 00, 00, 1C, 01, 00, 00, 1C, E0, 00, 00, 1C, BA, 00, 00, 52, 53, 44, 53, 2D, 01, DA, 69, 85, 0D, 2F, 43, A8, 28, F7, 0C, E7, EF, EB, 71, 01, 00, 00, 00, 43, 3A, 5C, 55, 73, 65, 72, 73, 5C, 63...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
45.5 KB (46,592 bytes)

The file gerador de armas vip.exe has been seen being distributed by the following URL.

Scan gerador de armas vip.exe - Powered by Reason Core Security