js.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.swat-portal.de.
MD5:
a60af0485db972b95b2bf00aa02437f5

SHA-1:
f6392e577e61252eaadb69d374270545383cc56a

SHA-256:
1ee00106bfa09f98d3f8d9e4d368cf101c37f358f1ea6b7b0a831976a91ecd5e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 5:07:57 AM UTC  (today)

File size:
2.8 MB (2,946,560 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\smartwebviewer-1.0.0.1\xulrunner\js.exe

File PE Metadata
Compilation timestamp:
5/11/2013 4:22:35 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
10.0

CTPH (ssdeep):
24576:wK0Z0EvlNCU9M1jKT0E12iCUAxs6uSCH8REhVuXG51kSxtC8nPoU+g8zQTpfN7uK:KiEvQ1jKyUI8sIuSxwKPNO64

Entry address:
0x232BF8

Entry point:
E8, 8C, 07, 00, 00, E9, B3, FD, FF, FF, FF, 25, 58, 81, 63, 00, FF, 25, 5C, 81, 63, 00, 6A, 14, 68, 58, ED, 67, 00, E8, C6, 06, 00, 00, FF, 35, 6C, D1, 6B, 00, 8B, 35, 28, 80, 63, 00, FF, D6, 89, 45, E4, 83, F8, FF, 75, 0C, FF, 75, 08, FF, 15, B4, 80, 63, 00, 59, EB, 64, 6A, 08, E8, ED, 07, 00, 00, 59, 83, 65, FC, 00, FF, 35, 6C, D1, 6B, 00, FF, D6, 89, 45, E4, FF, 35, 68, D1, 6B, 00, FF, D6, 89, 45, E0, 8D, 45, E0, 50, 8D, 45, E4, 50, FF, 75, 08, 8B, 35, 2C, 80, 63, 00, FF, D6, 50, E8, B3, 07, 00, 00, 83...
 
[+]

Code size:
2.2 MB (2,321,920 bytes)

The file js.exe has been seen being distributed by the following URL.

Scan js.exe - Powered by Reason Core Security