picexa.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from 113.171.224.244 and multiple other hosts.
MD5:
b6b98c52ca5a3e7f2766e953e5f04ebe

SHA-1:
dec18676d0f74037723e6e1e63ddbf54eb73b1a4

SHA-256:
f39caed5c5b90b8fae476e0d28dbd786f409a5ffdb9074d151e0754314651a58

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 11:30:11 AM UTC  (today)

File size:
2.4 MB (2,500,648 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\content.ie5\b5nci044\picexa.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
49152:vMfrXEnOxfZDIDE0h7sBNzB3g8pXo0UEbzy1cbLzJqVIMsOcgLCJe/TZ402:vcXZXsE0+tg8pXo0pyszJqi4jCJUv2

Entry point:
6D, 20, E6, F5, 7D, 46, 00, 5E, 80, 65, FF, 01, B9, 7D, 7C, 00, 00, 00, 00, 00, 7F, 00, 00, 00, 00, 00, 00, 00, DC, 13, 44, 47, BB, C1, 41, BA, 59, 07, 00, 40, 56, 18, E2, A0, CC, 05, CC, 82, 28, F3, 8A, 9A, C7, 65, 31, CB, 4B, DE, 99, 01, C2, D8, 7E, 11, 22, 0E, E0, 8C, 47, 81, D2, 6C, 58, 74, 24, E3, 18, 83, 9C, 4A, 9C, 91, 3D, 85, 30, EA, 3E, 93, CA, 32, 52, 77, F2, B0, DE, F2, AE, 51, 9C, E6, 9A, 53, 44, 1F, 1A, 8E, C9, 8E, 4B, 8A, 51, C7, EF, FB, 20, 62, 94, 87, B4, 83, 40, 0F, 47, 34, A2, EB, 0F, 11...
 
[+]

The file picexa.exe has been seen being distributed by the following 4 URLs.

http://113.171.224.244/.../picexa.exe

http://113.171.224.165/.../picexa.exe

http://113.171.224.208/.../picexa.exe

Scan picexa.exe - Powered by Reason Core Security