growfx_1_9_9_sp1_demo_3dsmax_2015_setup.exe

The program is a setup application that uses the Nullsoft Scriptable Install System installer. The file has been seen being downloaded from exlevel.com.
MD5:
a669b0008c1423a7c346b51f6e938e50

SHA-1:
247af8ef24c9133d6e21cabb0020badcf0423a49

SHA-256:
ea0963f1cf6cd3c1f0904d1f4cde942359c8e8235264c63c309204dee3a81aeb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 6:29:24 AM UTC  (today)

File size:
9.8 MB (10,245,872 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Scriptable Install System

Common path:
C:\users\{user}\downloads\growfx_1_9_9_sp1_demo_3dsmax_2015_setup.exe

File PE Metadata
Compilation timestamp:
12/5/2009 2:50:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:0G4LlxR64363PxbmMmeuFnSNsCTu47FDbWEhc0PP/H5pX94h:0JlP673PFmMIncTFvDr5pU

Entry address:
0x30CB

Entry point:
85, DF, 72, 0B, 0F, AF, D8, 84, DC, 69, F2, AD, 09, B5, 2E, EB, 02, 86, F5, F2, 86, F2, 81, FF, 63, C7, 00, 00, 78, 02, FF, C8, F3, 85, E8, 69, C1, CA, D0, CF, 94, 81, FE, 81, D1, 00, 00, C6, C0, 13, 0F, BE, EA, 87, FD, 85, D7, 86, E0, F3, 68, 71, 2A, E6, 00, 68, 5B, EB, 39, 00, 24, 0B, 35, CD, 1D, C7, 96, 48, E8, 8B, 00, 00, 00, 4F, 0F, BE, CE, F2, F7, C0, B2, 84, 72, 9F, 0F, AF, DA, B3, 88, F2, FE, C3, 72, 02, 28, D3, 47, 81, DF, 2A, D6, 8B, 33, 68, B1, F3, F7, FF, 88, C3, FE, CB, 28, E7, 5D, 73, 0B, 69...
 
[+]

Entropy:
7.9991  (probably packed)

Code size:
22.5 KB (23,040 bytes)

The file growfx_1_9_9_sp1_demo_3dsmax_2015_setup.exe has been seen being distributed by the following URL.

Scan growfx_1_9_9_sp1_demo_3dsmax_2015_setup.exe - Powered by Reason Core Security