originthinsetup.exe

This is a self-extracting archive and installer. The file has been seen being downloaded from origin-a.akamaihd.net.
MD5:
ec46b603932bd483c069e4e0812979c7

SHA-1:
ef1bb718e183ebcfbb6ecba7592622b059e7357a

SHA-256:
569b318268d82129241b286546ff8c5337f0a31167c1a33ca9028a9381578629

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 5:50:42 PM UTC  (today)

File size:
30 MB (31,408,584 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\originthinsetup.exe

File PE Metadata
Compilation timestamp:
2/1/2012 9:12:42 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
786432:XofoxbS8Bz3x22KrY6QUxoTSlVwVW7obE9nU:YwJzctePV4oo9nU

Entry address:
0x33E2

Entry point:
60, F2, 81, C7, 03, 88, C9, 66, F6, C1, 4B, 87, CA, 69, D1, 2C, 0A, EA, EF, 0F, AF, EF, F7, C7, 0A, 87, 70, F2, 8D, 2D, CA, B1, B6, 76, 0C, 64, C7, C0, D7, 62, 14, 05, BA, D1, D1, 00, 00, F7, C2, 1F, 18, FE, 5E, F6, C3, 4B, 86, C9, 81, F2, 72, 77, 00, 00, 1B, FE, 0F, AF, CF, F2, F6, C3, 74, 2B, DA, 0F, BF, C9, 81, C3, 4C, 3E, 00, 00, B0, 8B, 51, FE, CE, BD, 0D, 3F, 50, 99, B5, AD, 89, C7, 03, C2, E8, 00, 00, 00, 00, 69, C2, 5C, 72, ED, 7F, 69, EB, E1, 19, 3D, 51, 05, 5E, 72, 2A, 95, 0C, 7F, 8D, 3D, 26, 0B...
 
[+]

Entropy:
7.9992  (probably packed)

Code size:
25.5 KB (26,112 bytes)

The file originthinsetup.exe has been seen being distributed by the following URL.

Scan originthinsetup.exe - Powered by Reason Core Security