lanwid2010win9xp.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www1.medion.de.
MD5:
28ddf2f40f8cc37fa0bd6e747fbbf611

SHA-1:
19632ae01890cdb62af70a852b371be3aa505160

SHA-256:
fffb46f9af4ba0fae8f09f5d3fa8ba1bbcbd756608572cee7874d9912fa9ccb3

Scanner detections:
3 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/27/2024 4:59:53 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Packed
1.3.0.7400

K7 AntiVirus
Riskware
13.212.18285

Zillya! Antivirus
Trojan.Black.Win32.41126
2.0.0.2591

File size:
2.1 MB (2,175,267 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\lanwid2010win9xp.exe

File PE Metadata
Compilation timestamp:
8/25/1999 9:02:31 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
3.10

CTPH (ssdeep):
49152:Iy+JhHvWeYDE0ym+WQ79T+xFWAD63oN0NxBn0KM/YxluXqOTY:Iy+KLvqX7QD+3oNCxBnZeWluXHY

Entry address:
0x7E60

Entry point:
55, 8B, EC, 83, EC, 44, 56, FF, 15, 00, 33, 44, 00, 8B, F0, 8A, 00, 3C, 22, 75, 17, 84, C0, 74, 0B, 80, 3E, 22, 74, 0B, 46, 80, 3E, 00, 75, F5, 80, 3E, 22, 75, 0D, 46, EB, 0A, 3C, 20, 7E, 06, 46, 80, 3E, 20, 7F, FA, 80, 3E, 00, 74, 0B, 80, 3E, 20, 7F, 06, 46, 80, 3E, 00, 75, F5, C7, 45, E8, 00, 00, 00, 00, 8D, 4D, BC, 51, FF, 15, FC, 32, 44, 00, F6, 45, E8, 01, B8, 0A, 00, 00, 00, 74, 04, 0F, B7, 45, EC, 50, 56, 6A, 00, 6A, 00, FF, 15, E4, 32, 44, 00, 50, E8, 70, F8, FF, FF, 50, FF, 15, D4, 32, 44, 00, 5E...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
28 KB (28,672 bytes)

The file lanwid2010win9xp.exe has been seen being distributed by the following URL.

Scan lanwid2010win9xp.exe - Powered by Reason Core Security