installframework_170056g.exe

WinDev

PC SOFT

This is a setup program which is used to install the application.
Publisher:
PC SOFT

Product:
WinDev

Description:
PC SOFT - Executable auto-extractible

Version:
15.00Aa

MD5:
cbe3951711491214c70ebf0efbaeac8e

SHA-1:
73796794217ba272b1c5e6d10abe7f314016f4e6

SHA-256:
46a50c6d099f7c5384e19ad106e46f0b55ede2d39afb428a271591017ddbc58b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 11:08:09 AM UTC  (today)

File size:
17.7 MB (18,548,624 bytes)

Product version:
15.0

Copyright:
Copyright © PC SOFT 1993-2009

Original file name:
WDAutoEx.EXE

File type:
Executable application (Win32 EXE)

Language:
French (France)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\installframework_170056g.exe

File PE Metadata
Compilation timestamp:
1/5/2010 10:38:10 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
393216:Brh+9tSKZdbzCvM5VUx94izawV0oX/cPHaqU9fQMgoQF0MVpmSkvFfeQX:eKjvmV0TVBkPyhQZ+Cxkv5FX

Entry address:
0x123BA

Entry point:
87, F2, 89, F3, C6, C6, 7C, 80, E6, D6, 89, FA, 88, C8, 8B, C5, 87, C3, 8D, 1D, AF, 97, 46, A2, F7, C7, 56, 4F, BD, 90, 80, E8, 1F, 2B, CE, 15, 68, 66, 4E, 6D, 84, C6, 4E, F6, C4, FE, 39, C5, 51, 68, 1E, 82, FA, 00, F3, 0F, BF, DF, 87, C0, 8A, C8, E8, 00, 00, 00, 00, 5E, F6, C4, A4, F2, 68, 64, C3, 11, 00, 68, F5, 24, F4, 00, 89, F9, 81, F9, 47, 65, 00, 00, 74, 0E, 69, C3, CA, 66, 8B, 09, F7, C6, 68, 70, 32, 32, 84, F5, 85, EE, 29, F8, FE, CF, 8A, E0, 51, 72, 02, 2C, A5, 5D, C6, C7, BA, 80, C3, 07, 03, CD...
 
[+]

Entropy:
7.9972  (probably packed)

Code size:
70.5 KB (72,192 bytes)

The file installframework_170056g.exe has been seen being distributed by the following URL.

Scan installframework_170056g.exe - Powered by Reason Core Security