OTC.exe

OTC

OldTimer Tools

This is a setup program which is used to install the application. The file has been seen being downloaded from api.viglink.com and multiple other hosts.
Publisher:
OldTimer Tools

Product:
OTC

Version:
2.0.6.0

MD5:
2cc48a7dfedeca15dddd014e37392de9

SHA-1:
bc7bb55c513cff191bd0f6f39af5c7d30d120a12

SHA-256:
29e515e04aef49b26a3b7066775798882b69dc0a3d719ee2808d2e91b3aa4936

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/14/2025 10:28:52 PM UTC  (today)

File size:
197 KB (201,728 bytes)

Product version:
2.0.0.0

Original file name:
OTC.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\otc.exe

File PE Metadata
Compilation timestamp:
6/19/1992 4:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:CwsUysMc6cQwV29QNyPc5cH558TXY4JkjeruS:DY7dZSLXkK3

Entry address:
0x1000

Entry point:
B8, A4, 02, 49, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 40, 6F, 98, 40, DF, 40, 13, 4D, 84, 5D, 1C, FF, 04, 89, 61, 7A, 99, D9, C7, B8, 31, 2C, EB, D1, EA, 45, A5, E9, B9, D6, D2, 11, 13, 32, AB, BC, 43, F1, 8D, A4, 76, 0B, D8, C1, 39, E2, 28, EF, 09, 03, 91, FE, 71, 4E, 62, 75, E2, 65, 25, CB, 4E, 5B, B5, 09, AE, 10, D2, 4F, BF, 8E, 04, FF, DC, 2D, 43, 05, 8B, E4, B8, D0, E3, 2A, E0, E0, 8D, 70, E3, AD, E9, 05, 57, 2A, 61...
 
[+]

Entropy:
7.9568

Packer / compiler:
PECompact v2

Code size:
464 KB (475,136 bytes)

The file OTC.exe has been seen being distributed by the following 6 URLs.

http://api.viglink.com/api/click?format=go&key=59ca95b761b973f7093283b921e56892&loc=http://www.bleepingcomputer.com/forums/t/515644/.../page-2&v=1&libId=06c62b56-d71d-4c1f-aaaf-284bd066f204&out=http://oldtimer.geekstogo.com/OTC.exe&ref=http://www.bleepingcomputer.com/forums/t/515644/.../&title=Help reoving Scorpion Saver, DDS.com not running. - Page 2 - Virus, Trojan, Spyware, and Malware Removal Logs&txt=OTCleanIt&jsonp=vglnk_jsonp_13873075903176

Scan OTC.exe - Powered by Reason Core Security