popcf.exe

This is a setup program which is used to install the application.
MD5:
e334e64daa356e4830f8784d36b36ac0

SHA-1:
668277dea03b8dfb1a3f350afdc333eb999d20d2

SHA-256:
05b734ed6cac28b2e67c270032c48828ba3a3331b2f7694c39a363f341243fe1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 7:50:45 PM UTC  (today)

File size:
736.1 KB (753,727 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\popcf.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
12288:F7Sb+ykJAaXQ1mXTnCtUh4miSNqD0zcfPqw89lNjcsurSz/1iSuDdcFUG/VOE2:F7O+vJP+TtUumiaqDn5KDjcspzruD2FC

Entry point:
4D, 5A, EA, 01, 21, 00, 00, 00, 02, 00, BA, 0F, FF, FF, 0C, 06, 80, 00, 00, 00, 0E, 00, 06, 04, 1C, 00, 00, 00, 52, 4A, 53, 58, FF, FF, BA, 07, 05, 2E, 89, 16, 3A, 02, B4, 30, CD, 21, 8B, 2E, 02, FF, FF, 00, 8B, 1E, 2C, 00, 8E, DA, A3, 90, 00, 8C, 06, 8E, 00, 89, 1E, F0, 1F, 8A, FC, 2E, A6, 00, E8, 41, 01, C4, 3E, 88, FE, FF, E4, C7, 8B, D8, B9, FF, 7F, FC, F2, AE, E3, 61, 43, 26, 38, FF, E1, 05, 75, F6, 80, CD, 80, F7, D9, 89, 0E, E5, B9, 01, FF, 10, 00, D3, E3, 83, C3, 08, 83, E3, F8, CB, 8C, FE, 7F, C3...
 
[+]

Entropy:
7.9986  (probably packed)

The file popcf.exe has been seen being distributed by the following URL.

Scan popcf.exe - Powered by Reason Core Security