local1file.exe

n-Track Studio

Antonioli Flavio

This is a setup and installation application. The file has been seen being downloaded from download.ntrack.com and multiple other hosts.
Publisher:
n-Track Software  (signed by Antonioli Flavio)

Product:
n-Track Studio

Description:
n-Track Studio Multitrack Recording Software Setup

Version:
6, 1, 1, 2686

MD5:
7ee81d559509348cf7b3184ce2a334b3

SHA-1:
2fed0715588d9e90348799421abe4fc98db85a4b

SHA-256:
fbf948736ebb81ed73dae07290a26882d01fc8492ab1260b6e4e1f834c5f1ed1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 7:53:42 AM UTC  (today)

File size:
55.9 MB (58,627,912 bytes)

Product version:
6.0.0.0

Copyright:
© Flavio Antonioli. All rights reserved.

Original file name:
nTrackSetup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\local1file.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/22/2016 7:00:00 AM

Valid to:
12/13/2017 6:59:59 AM

Subject:
CN=Antonioli Flavio, O=Antonioli Flavio, L=Rome, S=Roma, C=IT

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
05B5DF1CD2C82C35266505C271C483A4

File PE Metadata
Compilation timestamp:
4/27/2016 8:55:23 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
1572864:FL5sCM/ISejsDFnNHRMONbHGQoqVFn/Z:F9sMOFnk4GSr/Z

Entry address:
0xE16B

Entry point:
E8, 18, 79, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 10, CC, 42, 00, E8, 6F, 49, 00, 00, E8, 52, 30, 00, 00, 0F, B7, F0, 6A, 02, E8, AB, 78, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, 91, 62, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Entropy:
7.9630  (probably packed)

Code size:
132 KB (135,168 bytes)

The file local1file.exe has been seen being distributed by the following 2 URLs.

Scan local1file.exe - Powered by Reason Core Security