gslib-grid(windows).exe

This is a setup program which is used to install the application. The file has been seen being downloaded from egela1516.ehu.eus.
Version:
1.0.0.0

MD5:
5ae76c1cc4a111a2d0557716e3f079bd

SHA-1:
0d2ac552c07d96f634e0d93635846b7e46760a70

SHA-256:
bd411752a9a7fc7f7c5b96e9aca2923683debc90cc42575e5859f9b7ac08a7e2

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/28/2024 12:45:58 AM UTC  (today)

Scan engine
Detection
Engine version

F-Secure
Adware.BrowseFox.EI
5.05.7110

File size:
3.2 MB (3,356,899 bytes)

Original file name:
My Application.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\gslib-grid(windows).exe

File PE Metadata
Compilation timestamp:
2/6/2008 6:58:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
49152:XKgsEyTPOoMjJWPDYtoAoB81BE7nNeHhkD9d5VGokmJRMp+ck2IPvVuWV35WFqwm:TsEaQWrYtlKheZmcp+4q

Entry address:
0x15582F

Entry point:
E8, 62, 56, 00, 00, E9, 16, FE, FF, FF, C3, B8, B7, B9, 55, 00, A3, 20, ED, 59, 00, C7, 05, 24, ED, 59, 00, B3, B0, 55, 00, C7, 05, 28, ED, 59, 00, 71, B0, 55, 00, C7, 05, 2C, ED, 59, 00, A5, B0, 55, 00, C7, 05, 30, ED, 59, 00, 1B, B0, 55, 00, A3, 34, ED, 59, 00, C7, 05, 38, ED, 59, 00, 31, B9, 55, 00, C7, 05, 3C, ED, 59, 00, 31, B0, 55, 00, C7, 05, 40, ED, 59, 00, 9B, AF, 55, 00, C7, 05, 44, ED, 59, 00, 2A, AF, 55, 00, C3, E8, 9B, FF, FF, FF, E8, 99, 61, 00, 00, 83, 7C, 24, 04, 00, A3, 70, 11, 5E, 00, 74...
 
[+]

Code size:
1.4 MB (1,474,560 bytes)

The file gslib-grid(windows).exe has been seen being distributed by the following URL.

Scan gslib-grid(windows).exe - Powered by Reason Core Security