novamind574.exe

NovaMind 5

NMS Global Pty Ltd

This is a setup program which is used to install the application. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
NMS Global Pty Ltd  (signed and verified)

Product:
NovaMind 5

Version:
1.9.5931.0

MD5:
7dec67ed5b1362a8a4ae652ba30c12cc

SHA-1:
137fa3ff24beb056e808888c44440cafacd646cf

SHA-256:
f4f3b461d489b5d8b9ba21888cb0fe5d8b857f51a1465d07098a56c8f28f6d08

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 7:58:49 PM UTC  (today)

File size:
13.9 MB (14,568,608 bytes)

Product version:
5.7.4

Copyright:
Copyright(c) NMS Global Pty Ltd

Trademarks:
All Rights Reserved

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\novamind574.exe

Digital Signature
Authority:
The Code Project

Valid from:
4/23/2010 2:00:00 AM

Valid to:
4/23/2013 1:59:59 AM

Subject:
CN=NMS Global Pty Ltd, O=NMS Global Pty Ltd, STREET=3/61 Commercial Drive, L=Shailer Park, S=QLD, PostalCode=4128, C=AU

Issuer:
CN=The Code Project Code Signing CA, O=The Code Project, C=CA

Serial number:
00E9033B386EB6A18DB2C7A0782BB391BD

File PE Metadata
Compilation timestamp:
3/22/2010 10:58:42 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
393216:ZEcdO8cM5MpLJAyZiVE1lDWnYryUgr0AFR:ZEcA81K3Ao16r0Ab

Entry address:
0x82C1E

Entry point:
E8, 34, CB, 00, 00, E9, 17, FE, FF, FF, 55, 8B, EC, 53, 56, 8B, 75, 08, 57, 33, FF, 39, 7D, 14, 75, 10, 3B, F7, 75, 10, 39, 7D, 0C, 75, 12, 33, C0, 5F, 5E, 5B, 5D, C3, 3B, F7, 74, 07, 8B, 5D, 0C, 3B, DF, 77, 1B, E8, E7, 43, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, 03, 12, 00, 00, 83, C4, 14, 8B, C6, EB, D5, 39, 7D, 14, 75, 05, 66, 89, 3E, EB, C9, 8B, 55, 10, 3B, D7, 75, 05, 66, 89, 3E, EB, CF, 83, 7D, 14, FF, 8B, C6, 75, 14, 0F, B7, 0A, 66, 89, 08, 40, 40, 42, 42, 66, 3B, CF, 74, 24, 4B, 75, EE...
 
[+]

Code size:
784 KB (802,816 bytes)

The file novamind574.exe has been seen being distributed by the following 9 URLs.

https://dw.uptodown.com/dwn/GZ2WO6d_eJcAbZvPSynmWVdkXyTnvocnWI55mIfKn9dshmXpTeFBgRamr5i7PL-wbX6oG4zAT8JL_4uKlEP3JuPn6LPhSXCYdLCEt8aE8E-S4LhpNxYB-RhjVb9yooj-/PUMcb5WPDG7g5v7_LN4hajbYAUfVlg6cts_h4x6YIWc0UWIy2f9TUYIzgtlvc0d0-FLad6ePU9IpkrCWxJnVlNFX5M8vBYAYHx66UMt2IxZiRFSukzs-xjjddO_Dz21n/sr8yMj_l6e07rseTydbHXLNhfBuKA7brOyyqbpznQ5NXaoBfaiLJYp1l-ubKZFF8F_aIiWiBIlpkQcAoYoFt0o-DwOhiEYjoAauBxP1mgluyhzlTw5ATIEFvosAIr1KX/.../

https://dw.uptodown.com/dwn/r6a09EdWH03YUr6x8xE59gSIhB-FNbtymsf5Zo2Izyyuw8kodpojVy_I9NLccsab82O_5vWdMnXnUJxyIK01Z8-mOMrYuyxYMa5oJGEXphP5tUVG_ajdG6WiX9lPsU6l/MqhUKh3fFI_I3yCOjfoSdOpMJJIwh1G4pvZnNpXmeR_ygOd6eMKg2U7XjP7Ne4ZzyAHR9SwCGnMnTjVN_akDXc_QIw3438sLp-OX2E3HrIy8Y55qfazxEE4JOafN_-Bq/Cza24e-2wZOm6H6bbw0ust29vKXIA3iYezVl67J2VJhJ3uUtvRWSNuQsRg_seg9HfNIgxvTmVUlc874maKMAMXFbHdNXjrOf4EVTeaYDQs3GYeF5HiaB778csDazKyj9/.../

http://dw13.uptodown.com/dwn/w1WDp4Rzs-9M9_qIrWvMeIc_b8gk7bt7uwkr3ILBFGi0j8ySOoURLqhZzABmD4vHBPU8JZJt1UsefSdXJEnT-2NM-hxGCJxVxNxZcOkz6bFI0se4hVtCNfvDtjAV3_hb/WAgQMTs81n2fuPsDM2gfDJCVuuMTghR_sDycMZqaJ3KdgwKpXGXW4mrpKNHqJaPwLdwi2ZSbcqpz6cd6XTDqfdS_yedA2r13v3OnmVUnNmORMiYyEBVSpHjCDhI-3zqa/9OAn5v_lDrIB2HVINnYmkrNVACkHFUd1TT3HZeOLQJAlolHNGCkBEDRHAfAckBlnCDowdGfpC2257RmqGTRKJxwt3XcRR_hdsuRXe2hyLaAp195PTqTZsNG0WqEKVgaT/.../novamind-express-5-7-4-en-win.exe

https://dw.uptodown.com/dwn/bEpafG3fhRbMJ-moyeCL8aJVlwiOyfFk2f1WxWSoBNT611sHdcPJS2SL48coi_W9nG3La060dNscSmWfJY4ZwmX-dcDyRDgIhvVT_cIpiX8E1XTl2l8gJ4imgrjeR_T7/OySB6wkDgRoIq-sGEKdIEuq9BgQ4H_APVVcqPZsrxi02NP9QwLBglgp8EQAm9FvA2luwvmbjI9IWrVrBl3YqpqNcHFnLgQOqWDe13uIfOpMExxafy1C-WZX8HTlNGoXh/DLtg6XVTyRTbWNQkN_bO-TY-a9_tnll9DTqRPqfOZvCv3TWknBYK5_vb1EJGCjmyfjmILs81dZW9j8mSjM3LFTYPeyrCzLlOf-2eD-Bmwf3ZRFj3hiq_4_fmMMHDpTU5/.../

Scan novamind574.exe - Powered by Reason Core Security