hoxa1.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.snv.jussieu.fr.
MD5:
8dfa1f011c9491cf88b71d494a1061d2

SHA-1:
fd5334fe0a3dcbe9399d02993eca99ebc0bd77cb

SHA-256:
955ae14a3ae67391ed99fba7ad5ab87573359f2522b8b00ad850b68780cbb8ae

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
1/14/2025 8:42:22 AM UTC  (today)

Scan engine
Detection
Engine version

Quick Heal
(Suspicious) - DNAScan
5.16.14.00

Trend Micro House Call
PAK_Generic.001
7.2.141

Trend Micro
PAK_Generic.001
10.465.20

File size:
106 KB (108,533 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\hoxa1.exe

File PE Metadata
Compilation timestamp:
11/1/1999 8:03:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:nsp57mtky7Pna/iHOwEfinRiy8uUAlGMDekN7a/RJw+lcEhq5wrpohM1v:nQmiyLa/iHsfEiyfsIpAYfu1v

Entry address:
0x1103A

Entry point:
90, 75, 00, E9, BE, 9F, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Packer / compiler:
ASPack v1.07b

Code size:
148 KB (151,552 bytes)

The file hoxa1.exe has been seen being distributed by the following URL.

Scan hoxa1.exe - Powered by Reason Core Security