ltswebcomponents.exe

LTS Web Components

SHENZHEN BROVISION TECHNOLOGY CO.,LTD

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from 192.168.1.8 and multiple other hosts.
Publisher:
SHENZHEN BROVISION TECHNOLOGY CO.,LTD  (signed and verified)

Product:
LTS Web Components

Description:
LTS Web Components Setup

Version:
3.0.5.51

MD5:
a1ca17108dfedecec04f70b56bf15e0f

SHA-1:
0f806927db0010fcb87d67a64f5f1848d6c04645

SHA-256:
d55882bf109be51f98079f5b270341769083b93cbf31133c3d03214960f35447

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 1:13:06 PM UTC  (today)

File size:
1.7 MB (1,797,936 bytes)

Product version:
3.0.5.51

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Chinese (Simplified, China)

Common path:
C:\users\{user}\Pictures\ltswebcomponents.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
7/24/2013 7:00:00 PM

Valid to:
9/23/2015 6:59:59 PM

Subject:
CN="SHENZHEN BROVISION TECHNOLOGY CO.,LTD", OU=Engineering Department, O="SHENZHEN BROVISION TECHNOLOGY CO.,LTD", L=Shenzhen, S=Guangdong, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
2504DB47D36C9AB0CBE43B090CB9FCE0

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:R/mK2fQ9ssZ2dg41am2IqWTfS0+Ggj19MC2SDeMHDybbhiHkjUygaQ4Mdp3iyn5L:Zn2fg1ApAOIj1SCtaMOhiHEMdYyn5ZA

Entry address:
0x9978

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 22, 97, FF, FF, E8, F1, A8, FF, FF, E8, 1C, CB, FF, FF, E8, 63, CB, FF, FF, E8, 2E, F3, FF, FF, E8, 95, F4, FF, FF, 33, C0, 55, 68, 2B, A0, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, F4, 9F, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 9B, FE, FF, FF, E8, 22, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 28, D1, FF, FF, 8B, 55, F0, B8, E0, CD, 40, 00, E8, B7, 97, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E0, CD, 40, 00, B2, 01, B8...
 
[+]

Entropy:
7.9946

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
36.5 KB (37,376 bytes)

The file ltswebcomponents.exe has been seen being distributed by the following 22 URLs.

http://192.168.1.8/.../LTSWebComponents.exe

http://192.168.120.63:81/.../LTSWebComponents.exe

http://192.168.1.71/.../LTSWebComponents.exe

http://192.168.1.200/.../LTSWebComponents.exe

http://192.168.0.91:85/.../LTSWebComponents.exe

http://192.168.0.200/.../LTSWebComponents.exe

http://192.168.1.10/.../LTSWebComponents.exe

http://96.83.44.33/.../LTSWebComponents.exe

http://10.1.10.113:90/.../LTSWebComponents.exe

http://192.168.60.130/.../LTSWebComponents.exe

http://10.0.240.52:2052/.../LTSWebComponents.exe

http://37.9.176.94:8080/.../LTSWebComponents.exe

http://192.168.1.120/.../LTSWebComponents.exe

http://10.1.10.122/.../LTSWebComponents.exe

http://192.168.11.11:8080/.../LTSWebComponents.exe

http://168.1.1.50/.../LTSWebComponents.exe

http://71.156.16.198/.../LTSWebComponents.exe

Scan ltswebcomponents.exe - Powered by Reason Core Security