installgoldwave619.exe

GoldWave Inc.

This is a self-extracting archive and installer. The file has been seen being downloaded from software.naver.com and multiple other hosts.
Publisher:
GoldWave Inc.  (signed and verified)

Description:
Installer program for GoldWave software

Version:
6.1.0.0

MD5:
276a4daa0b12a521dabc04af4d18fc3f

SHA-1:
35c6487dd75d00fec23bc04f45a61b6163beba90

SHA-256:
07126dea1583dd683483e85a38b395218f07cb8b2cc4abca89deb6e57945afdc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 5:20:07 PM UTC  (today)

File size:
12.2 MB (12,796,016 bytes)

Product version:
6.1.0.0

Copyright:
Copyright © 2016 GoldWave Inc.

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
10/25/2015 1:00:00 AM

Valid to:
2/11/2016 11:59:59 PM

Subject:
CN=GoldWave Inc., O=GoldWave Inc., STREET=2 Third St., STREET=PO Box 21151, L=Mount Pearl, S=Newfoundland, PostalCode=A1N 2A5, C=CA

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
0DC533AF571E451645452674FAC230B6

File PE Metadata
Compilation timestamp:
1/8/2016 5:22:11 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
393216:ZJS0v4FAi1M8BZqaIIYZ+C5d72DEyzYP/ovx:Zs0bi1tB5e2YyzYP/ax

Entry address:
0x11A0

Entry point:
6A, 00, 48, 31, C9, E8, FE, 4D, 08, 00, 48, 89, 05, EF, CE, 08, 00, E8, 8A, F9, 05, 00, E8, F5, 42, 05, 00, E8, 90, F9, 05, 00, 48, 8D, 05, 39, CE, 08, 00, 48, 8D, 0D, D2, 22, 00, 00, 48, 89, 48, 30, 48, 8D, 0D, 27, FE, FF, FF, 48, 89, 08, 48, 8D, 0D, 61, FF, FF, FF, 48, 89, 48, 08, 48, 8D, 0D, 56, FF, FF, FF, 48, 89, 48, 10, 48, 8D, 0D, 9F, FF, FF, FF, 48, 89, 48, 18, 48, 8D, 0D, 7C, B1, 07, 00, 48, 89, 48, 68, 48, 8D, 0D, D1, B6, 07, 00, 48, 89, 48, 70, 48, 8D, 0D, 86, B8, 07, 00, 48, 89, 48, 78, 48, 8D...
 
[+]

Entropy:
7.9572  (probably packed)

Code size:
536 KB (548,864 bytes)

The file installgoldwave619.exe has been seen being distributed by the following 12 URLs.

http://software.naver.com/api/.../httpDown.nhn?softwareId=MFS_100190|all|GWV_007742&key=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

Scan installgoldwave619.exe - Powered by Reason Core Security