KureInstaller.exe

The Kure Installer

Invisatec LLC

This is a setup and installation application. The file has been seen being downloaded from s3.amazonaws.com.
Publisher:
Centurion Technologies  (signed by Invisatec LLC)

Product:
The Kure Installer

Description:
SmartShield Home Edition

Version:
1.0.0

MD5:
2121ff3f4b46b0262bfa6aeea2eb9a20

SHA-1:
aaa182dacd5355235647132c438e0f29d8e124ed

SHA-256:
6166cf12e3a152d46552bd14d14ea1de5895709dc33f9cf082b4e1cb43b38587

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/28/2024 2:53:21 PM UTC  (today)

File size:
184.9 MB (193,852,832 bytes)

Product version:
1.0.0

Copyright:
Copyright (C) 2015 Centurion Technologies

Original file name:
KureInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\kureinstaller.exe

Digital Signature
Signed by:

Authority:
Symantec Corporation

Valid from:
12/8/2014 7:00:00 PM

Valid to:
12/9/2015 6:59:59 PM

Subject:
CN=Invisatec LLC, O=Invisatec LLC, L=Tampa, S=Florida, C=US, SERIALNUMBER=L14000169989, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Florida, OID.1.3.6.1.4.1.311.60.2.1.3=US

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA - G2, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
15043E51C50384BC2FA48C49EAABE026

File PE Metadata
Compilation timestamp:
8/12/2014 9:30:15 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
3145728:UdwQXI5Y7JyB1emw4s485dlbWvcW/V6t4rfkP3HCTDuMmhDrLPPrHrfgq8pnLrkW:UdHI5SYjwF4GlqN/ktSfkfHC3zmh3LP6

Entry address:
0xC875C

Entry point:
E8, 47, CC, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 56, 8B, F0, 33, DB, 3B, F3, 75, 1E, E8, 5D, 4E, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, C5, D5, FF, FF, 83, C4, 14, 8B, C6, E9, C2, 00, 00, 00, 57, 39, 5D, 0C, 77, 1E, E8, 39, 4E, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, A1, D5, FF, FF, 83, C4, 14, 8B, C6, E9, 9D, 00, 00, 00, 33, C0, 39, 5D, 14, 66, 89, 06, 0F, 95, C0, 40, 39, 45, 0C, 77, 09, E8, 0A, 4E, 00, 00, 6A, 22, EB, CF, 8B, 45, 10, 83, C0, FE, 83, F8, 22, 77...
 
[+]

Entropy:
7.9985  (probably packed)

Code size:
1021.5 KB (1,046,016 bytes)

The file KureInstaller.exe has been seen being distributed by the following URL.

Scan KureInstaller.exe - Powered by Reason Core Security