peoplelinkv3.8.6.3.exe

Fastonz

This is a setup program which is used to install the application. The file has been seen being downloaded from www.emitra.gov.in and multiple other hosts.
Publisher:
Fastonz

Version:
03.08.06.03

MD5:
b5ed4632edb88fd9d1d577c088e14e67

SHA-1:
de0d0cec0c2fe9766932549e897dd52d8e4c55b4

SHA-256:
9074fd758a108713f3260689930d51d9056d205419041378b8618e6fe1264b8a

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
2/25/2025 12:07:07 AM UTC  (today)

Scan engine
Detection
Engine version

Vba32 AntiVirus
BScope.Malware-Cryptor.Hlux
3.12.26.4

ViRobot
Trojan.Win32.A.Scarsi.10000534[h]
2014.3.20.0

File size:
9.5 MB (10,000,534 bytes)

Product version:
03.08.06.03

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\users\{user}\downloads\programs\peoplelinkv3.8.6.3.exe

File PE Metadata
Compilation timestamp:
8/25/2014 3:30:34 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:2LUK1SD9qzerWhf3EYrKerVgQYOU1eTiAOUZIsWKI9NyaS/nc3bBFDCrij3t:wqmf3EcKoVWmKuIsWKINyN03bbuG7t

Entry address:
0x113C4

Entry point:
55, 8B, EC, 83, C4, A4, 53, 56, 57, 33, C0, 89, 45, C4, 89, 45, C0, 89, 45, A4, 89, 45, D0, 89, 45, C8, 89, 45, CC, 89, 45, D4, 89, 45, D8, 89, 45, EC, B8, F8, 0A, 41, 00, E8, E0, 51, FF, FF, 33, C0, 55, 68, A6, 1A, 41, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 62, 1A, 41, 00, 64, FF, 32, 64, 89, 22, A1, 48, 5B, 41, 00, E8, 22, D8, FF, FF, E8, D9, D3, FF, FF, 80, 3D, 08, 2B, 41, 00, 00, 74, 0C, E8, 37, D9, FF, FF, 33, C0, E8, 78, 32, FF, FF, 8D, 55, EC, 33, C0, E8, EA, A4, FF, FF, 8B, 55, EC, B8, 54, 86...
 
[+]

Entropy:
7.9894

Developed / compiled with:
Microsoft Visual C++

Code size:
66 KB (67,584 bytes)

The file peoplelinkv3.8.6.3.exe has been seen being distributed by the following 3 URLs.

Scan peoplelinkv3.8.6.3.exe - Powered by Reason Core Security