osiewicz.exe

Mediator Runtime

MatchWare A/S

This is a setup program which is used to install the application. The file has been seen being downloaded from osiewicz.pl.
Publisher:
MatchWare A/S

Product:
Mediator Runtime

Version:
7, 0, 0, 125

MD5:
f6b7182e9727b2147805fb31ddbbbdc9

SHA-1:
52bceaa7938e7faff11b917b063e97e1bff95ad4

SHA-256:
c02700a10c470c98e7ca290ab3ae98dbca71e38bab21dfdba1f752e57f113ce2

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 9:24:06 AM UTC  (today)

File size:
11.6 MB (12,154,981 bytes)

Product version:
7, 0, 0, 0

Copyright:
Copyright (C) 1993-98

Original file name:
Md8rntm.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\osiewicz.exe

File PE Metadata
Compilation timestamp:
12/19/2002 6:26:59 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:5GexihiZpA7d5OTYJUpA2W50hajn9igaPh/VsFDJlWUHgVy+S3:5Tihif9Tgd2W5Ia5irLsgUc43

Entry address:
0x2FE004

Entry point:
EB, 08, 35, 48, 34, 30, 4C, 31, 4E, 00, 60, E8, 00, 00, 00, 00, 5D, 8B, D5, 81, ED, 44, 73, 40, 00, 2B, 95, 74, 74, 40, 00, 83, EA, 10, 89, 95, 70, 74, 40, 00, 8B, 44, 24, 20, 25, 00, 00, FF, FF, 80, 38, 4D, 74, 07, 2D, 00, 00, 01, 00, EB, F4, 93, 89, 85, 7C, 74, 40, 00, 8D, BD, 8C, 74, 40, 00, E8, 83, 00, 00, 00, 89, 85, 80, 74, 40, 00, 8D, BD, A4, 74, 40, 00, E8, 72, 00, 00, 00, 89, 85, 84, 74, 40, 00, 8D, BD, F0, 73, 40, 00, 57, FF, D0, 8D, BD, 99, 74, 40, 00, E8, 58, 00, 00, 00, 89, 85, 88, 74, 40, 00...
 
[+]

Code size:
640 KB (655,360 bytes)

The file osiewicz.exe has been seen being distributed by the following URL.

Scan osiewicz.exe - Powered by Reason Core Security