le bot 8.4.exe

Le bot

JamesR

This is a setup program which is used to install the application. The file has been seen being downloaded from dc165.2shared.com.
Publisher:
JamesR

Product:
Le bot

Version:
1.0

MD5:
989c9f9b1fd8825005e59998dcfa3b0d

SHA-1:
db76849829d65b0758cd02568f9b191b77fd8d39

SHA-256:
3525d347cb1088c5726d6245e4d33fa3647c86b679b738a2771e2ac0e2e00766

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/30/2024 8:40:35 AM UTC  (today)

File size:
956.8 KB (979,769 bytes)

Product version:
1.0

Original file name:
Le Bot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\le bot 8.4.exe

File PE Metadata
Compilation timestamp:
6/12/2008 2:36:15 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.0

CTPH (ssdeep):
24576:7BSNra0+vL2ysg06bDZRyyGkJ3Mu0NTdMMJwy:VYa1L2yD97yAJcXNTBP

Entry address:
0x1AAE80

Entry point:
0F, B7, CD, 85, CA, F3, 38, EA, B9, E4, 10, 6B, 3C, 0F, BE, FD, B5, 60, 0F, AF, F8, F2, 0F, AF, CB, 85, F0, 74, 05, 18, FB, 80, E7, 64, 86, DB, 19, D6, 50, 4B, 59, 69, D8, 8F, 18, 52, 4D, F2, F2, 85, D5, 85, FE, 51, 0F, AF, F1, 20, FF, 69, F3, 79, 55, B3, A9, 5A, 47, 01, C1, 20, E7, 8B, EA, B7, F3, F2, 28, E9, BE, EB, C5, 92, AD, 2B, C5, BF, 63, 68, D6, FE, 47, BA, E5, D7, B2, 8D, BA, CC, 90, 18, BB, C7, C5, DC, ED, FA, BD, 0F, AF, F9, 86, F5, 8D, 05, AC, 8F, 21, 0F, 72, 03, 0F, BF, C0, 81, F0, 03, 0C, 98...
 
[+]

Entropy:
7.8180  (probably packed)

Code size:
660 KB (675,840 bytes)

The file le bot 8.4.exe has been seen being distributed by the following URL.

Scan le bot 8.4.exe - Powered by Reason Core Security