instspeedfan451.exe

The program is a setup application that uses the Nullsoft Scriptable Install System installer. The file has been seen being downloaded from www.almico.com.
MD5:
72a6b1d3e3afa9486e5d51185e4fa3e6

SHA-1:
06df04bc9f1d40a83873b63d4a26bc449aa3b106

SHA-256:
74fe5d82cb8660172e7a40099ea19efb5d706f71e7045c9b08156677e75cfd16

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 2:14:45 PM UTC  (today)

File size:
3.3 MB (3,410,440 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Scriptable Install System

Common path:
C:\users\{user}\downloads\instspeedfan451.exe

File PE Metadata
Compilation timestamp:
12/6/2009 12:50:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:xmM8r9154DReIfEeOXH3dttR5bwlow41DFLLPF63gO8F2A:xsj54D0E7OHdS4hFLLPF63gxr

Entry address:
0x30CB

Entry point:
8A, FA, 52, 0F, AF, CF, 87, F3, 14, 21, 0F, AF, FF, 47, 8B, F0, 0F, BF, F1, 45, 85, C5, F3, E8, 7D, 00, 00, 00, 89, EE, F7, C3, E2, 3A, CB, 52, 81, DE, 61, 0D, 03, 35, 00, ED, 8B, D2, EB, 02, B3, 36, 47, 85, C2, 78, 07, 86, D1, 0F, AF, C9, 1A, EA, C7, C7, A8, AC, D0, F5, B2, 21, EB, 06, B6, 7A, 11, C7, FF, CF, B9, 00, 00, 00, 00, 8D, 3D, D5, E9, 0E, 9B, C7, C2, 60, 85, C5, 5E, 85, C6, 33, CB, C6, C2, 10, 69, FE, 55, B1, B2, 8B, 0F, B7, D7, 8B, D9, EB, 07, 4F, 0F, AF, FE, F6, C1, 11, 78, 02, 87, FF, 8D, 33...
 
[+]

Entropy:
6.2487

Code size:
22.5 KB (23,040 bytes)

The file instspeedfan451.exe has been seen being distributed by the following URL.

Scan instspeedfan451.exe - Powered by Reason Core Security