linklines-install205.exe

The program is a setup application that uses the Nullsoft Scriptable Install System installer. The file has been seen being downloaded from i.download.idg.pl.
MD5:
c6daa1d4722ca061e3b928e34b87e2d7

SHA-1:
d88e77c001e408e79ac3704cf9869db24f00469b

SHA-256:
7ea1f1a2e17e0ed6ce09f51e3dabc39167564e0b7117fa143c7616d0dacf8f25

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 1:27:40 AM UTC  (today)

File size:
5.1 MB (5,327,011 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Scriptable Install System

Common path:
C:\users\{user}\downloads\linklines-install205.exe

File PE Metadata
Compilation timestamp:
12/5/2009 11:50:52 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:7BNfl4TN9eS5H57qVEarAZkMfyBaz1h621WIBLxmbkjqHfbB/TXjTZwESxUjY0:FNdYT57qVNrefyBw1h621BLgkid/DpSA

Entry address:
0x30FA

Entry point:
0F, B6, F9, F6, C6, E9, 19, FB, 30, D1, F7, C1, 39, 4F, 4D, B0, 84, F3, 0F, BF, E9, 00, CD, 89, ED, 69, D2, EA, 83, 44, 1D, 47, E8, B9, 00, 00, 00, 2B, F6, 81, E0, 28, F8, E2, FD, C7, C0, 7D, A7, 67, 44, 87, F8, 8D, 3D, D6, CC, 7A, DC, 45, 84, C6, 0F, AF, DD, FE, CF, 8B, C6, C7, C0, 22, D4, AE, 6A, 20, E4, 33, DB, 74, 06, 40, 38, C4, 0F, AF, D0, 81, EB, 7A, 4E, F5, FF, FE, CE, 8D, 15, 95, 68, CF, 36, F7, C7, 5E, FB, 36, 35, 8D, 05, B5, C9, C2, E4, 53, 18, EC, FE, C2, 80, F0, CC, 59, 0F, AF, D5, 69, C5, 3D...
 
[+]

Code size:
23.5 KB (24,064 bytes)

The file linklines-install205.exe has been seen being distributed by the following URL.

Scan linklines-install205.exe - Powered by Reason Core Security