jeweell_agent_setup.exe

This is a setup and installation application. The file has been seen being downloaded from devid.info and multiple other hosts.
Version:
1.0.0.0

MD5:
eb600499c4a6f2421f75da5da1eeca5b

SHA-1:
ae8add834b48662e43f37eec822d93f6ff560c05

SHA-256:
d51c3fcedadb2f166469f755ed01529a2d34888b5cde60f05757ba32a467999f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/28/2024 5:23:32 AM UTC  (today)

File size:
7.8 MB (8,176,640 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\jeweell_agent_setup.exe

File PE Metadata
Compilation timestamp:
3/11/2016 8:13:46 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:+vRvR79NCXkx3taWTBQCra7Q1wJbecUa6/aYS2S7AA+e5Grh9:6vRukthNQHc1wheLSYSdGxf

Entry address:
0x2DD8C0

Entry point:
55, 8B, EC, 83, C4, F0, 53, B8, 34, F7, 6C, 00, E8, 83, 14, D3, FF, 8B, 1D, 08, BC, 6E, 00, 8B, 03, E8, 22, 3E, F0, FF, 8B, 03, B2, 01, E8, 65, 5B, F0, FF, 8B, 03, BA, CC, D9, 6D, 00, E8, BD, 37, F0, FF, 8B, 0D, 50, C0, 6E, 00, 8B, 03, 8B, 15, 88, DC, 6C, 00, E8, 12, 3E, F0, FF, 8B, 0D, 30, B9, 6E, 00, 8B, 03, 8B, 15, D8, 83, 6B, 00, E8, FF, 3D, F0, FF, 8B, 0D, 94, B2, 6E, 00, 8B, 03, 8B, 15, 84, EF, 6B, 00, E8, EC, 3D, F0, FF, 8B, 0D, 80, C0, 6E, 00, 8B, 03, 8B, 15, A4, B1, 6B, 00, E8, D9, 3D, F0, FF, 8B...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.9 MB (2,997,248 bytes)

The file jeweell_agent_setup.exe has been seen being distributed by the following 10 URLs.

http://devid.info/21E845B1-6088-45AE-A8D9-AE95A340BA10/FinalDownload/DownloadId-6949B66FF728E87ED7AB84CC048DA03D/21E845B1-6088-45AE-A8D9-AE95A340BA10/.../DevID_agent_installer.exe

http://devid.info/.../DevID_agent_4.16_installer.exe

temp:DevID_agent_installer.exe

Scan jeweell_agent_setup.exe - Powered by Reason Core Security