powi.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.analogx.com.
MD5:
f35cfb7cd9c46a8a61e0ff9c3c4efdea

SHA-1:
0a9d65eed1c3235974252b9646cf7774c980fa7e

SHA-256:
f6a50c0cd11c5bc443bd8a49b2c60d8bb0687551117c0ec2fdced529782474d9

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 4:33:37 PM UTC  (today)

File size:
415.1 KB (425,096 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\powi.exe

File PE Metadata
Compilation timestamp:
5/23/2009 10:13:39 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
6144:SefdDoDLdnowxc2/DvJQTZvOPUc/iGzm0jI8dA2JI3p9fiYQy0jQ9p6c7899Jb:rRoDLjO2/DS4/iG1vI3jKUpd83J

Entry address:
0x12357

Entry point:
0F, C9, 34, 26, 68, 16, 2C, 38, 00, 57, 0F, CE, E8, 46, 00, 00, 00, 10, DD, 20, C6, 81, FD, A9, E9, 00, 00, 73, 06, 3B, CB, 89, EF, 85, C9, BE, DB, 94, 00, 00, 8D, 2D, 43, 3F, 15, 64, 81, F6, 10, 86, 00, 00, F6, C2, 09, 81, EE, 6F, 0C, 00, 00, FE, C0, 4D, 81, EE, 2B, 0C, 00, 00, 81, C6, 2A, 0C, 00, 00, 45, 02, DC, 81, FE, AC, 01, 00, 00, 73, E6, 59, 0F, 6E, D1, F7, C1, 6E, E2, A2, 76, FF, C7, 55, 86, D4, 58, 0F, 7E, D3, B2, EF, 0F, B6, CA, 0F, AF, F0, 89, F1, B8, B5, EE, 0A, 00, C7, C2, F2, D9, 3B, EF, 35...
 
[+]

Code size:
119.5 KB (122,368 bytes)

The file powi.exe has been seen being distributed by the following URL.

Scan powi.exe - Powered by Reason Core Security