powersystems_sales_tool_v39.2-25-march-2016.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.ibm.com.
Version:
1.0.0.0

MD5:
cc703b3f2198c3dea57f04a3ac6a64dd

SHA-1:
72a947756170722acbc5b888dd6adec39d8e55e2

SHA-256:
f69106bf1809ba03d81d85a741d338a25729e63b993f3f5b69ddf6bc5af553fc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 5:42:27 AM UTC  (today)

File size:
8 MB (8,350,208 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
3/24/2016 10:21:55 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:JJEalYSB5Bzj5fzwNtPRGBUcbP6gZBo9GEn:jEalYS9ZcRGBUcr6gZBw

Entry address:
0x209508

Entry point:
55, 8B, EC, 83, C4, F0, B8, D4, 06, 60, 00, E8, E4, 4E, E0, FF, A1, D4, F1, 60, 00, 8B, 00, E8, EC, 5A, FB, FF, 8B, 0D, A0, F0, 60, 00, A1, D4, F1, 60, 00, 8B, 00, 8B, 15, 9C, AA, 5F, 00, E8, EC, 5A, FB, FF, 8B, 0D, E0, EE, 60, 00, A1, D4, F1, 60, 00, 8B, 00, 8B, 15, C4, A7, 5F, 00, E8, D4, 5A, FB, FF, A1, D4, F1, 60, 00, 8B, 00, E8, 2C, 5C, FB, FF, E8, AB, FB, DF, FF, 8D, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2 MB (2,128,896 bytes)

The file powersystems_sales_tool_v39.2-25-march-2016.exe has been seen being distributed by the following URL.