pangu_v1.2.1.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from dl.pangu.25pp.com.
MD5:
ae0776da686db4359032802c7da9637f

SHA-1:
b882b7be818ed00016b83cb2dab5ff1f4c6f063b

SHA-256:
d853ee162a72f4f26f626430f73140e7f27b2034f46ac134a2887aacad525089

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 9:03:25 PM UTC  (today)

File size:
4.3 MB (4,485,160 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\pangu_v1.2.1.exe

File PE Metadata
Compilation timestamp:
8/11/2014 9:29:07 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:olVN5jf6PPdnMn69PS89mle2uan8pT16YEVX00zA0PfBrkw:YV3jfIPdJhS8YmRE3MSBN

Entry address:
0x411112

Entry point:
E9, CC, 55, 00, 00, BA, 45, 95, DB, 7E, 30, 83, BA, D8, C6, A0, 68, 84, 96, 3A, E0, 53, BA, DD, 2A, D3, 63, B4, DF, 2C, 98, D8, 21, 28, B4, 75, E6, 25, 14, CC, 96, 61, D6, A5, C1, 95, C0, 3E, ED, 57, 01, 05, D1, D7, 46, 9B, FB, 9B, 5B, 33, 4F, 1C, BF, 04, E9, B0, 9C, C3, 1B, 6D, 99, DF, 74, F5, C3, 7D, 6C, 62, F9, 27, A7, 9B, 89, 23, 15, 0C, 86, 8E, B0, 5C, F8, 16, 82, 3D, 45, CC, 64, 6E, 9E, 0E, 9D, 1D, 2A, 18, 41, E5, CB, C9, CB, 65, 73, DD, FB, 2D, B3, 66, FE, C0, 35, 51, 90, 2C, 9D, E1, 9C, A4, 4B, 2E...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
2 MB (2,128,384 bytes)

The file pangu_v1.2.1.exe has been seen being distributed by the following URL.

Scan pangu_v1.2.1.exe - Powered by Reason Core Security