latitude_3x70_1.0.3.exe

Dell USA L.P.

This is a setup program which is used to install the application. The file has been seen being downloaded from downloads.dell.com.
Publisher:
Dell USA L.P.  (signed and verified)

MD5:
af5b6fbeeec127e849e4a51c0e6574b6

SHA-1:
3daa31fae34f7f8041bfd768a8099de30a76008a

SHA-256:
22366a3cd35992536ff36d261fd4a9ff3746ea3d3d3a0bad133ca7688d05a071

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 1:46:45 AM UTC  (today)

File size:
6.1 MB (6,416,408 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\latitude_3x70_1.0.3.exe

Digital Signature
Signed by:

Authority:
Verizon Enterprise Solutions

Valid from:
10/24/2015 2:22:42 AM

Valid to:
10/24/2016 2:22:39 AM

Subject:
CN=Dell Inc., O=Dell USA L.P., L=Round Rock, S=TX, C=US

Issuer:
CN=Verizon Public SureCodeSign CA G14-SHA2, OU=Cybertrust, O=Verizon Enterprise Solutions, L=Amsterdam, C=NL

Serial number:
710E0A11DD84784D9B7A615197BD1E57C87E5A99

File PE Metadata
Compilation timestamp:
7/24/2015 5:19:38 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:NT1fEc3b2rTq+3dtzoU5aZY4l+nYEI1I3SM7YaNdDehB5iYtBD3unm1VqTx:7fJR+3daVY1nYESDM7HNdWDigxemfG

Entry address:
0x4A64E

Entry point:
E8, A5, 56, 00, 00, E9, 89, FE, FF, FF, 6A, 10, 68, 00, C7, 45, 00, E8, FC, 38, 00, 00, 33, C0, 39, 45, 08, 0F, 95, C0, 85, C0, 75, 18, E8, 6C, 28, 00, 00, C7, 00, 16, 00, 00, 00, E8, CA, 38, 00, 00, 83, C8, FF, E9, C5, 00, 00, 00, 33, C0, 8B, 7D, 0C, 85, FF, 0F, 95, C0, 85, C0, 74, DA, F6, 47, 0C, 40, 75, 5F, 57, E8, F8, 36, 00, 00, 59, 83, F8, FF, 74, 1B, 83, F8, FE, 74, 16, 8B, D0, C1, FA, 05, 8B, C8, 83, E1, 1F, C1, E1, 06, 03, 0C, 95, A0, 00, 47, 00, EB, 05, B9, 80, 54, 46, 00, F6, 41, 24, 7F, 75, A2...
 
[+]

Entropy:
7.9845

Packer / compiler:
PEQuake V0.06

Code size:
130.5 KB (133,632 bytes)

The file latitude_3x70_1.0.3.exe has been seen being distributed by the following URL.

Scan latitude_3x70_1.0.3.exe - Powered by Reason Core Security