propol.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.hydronship.net.
MD5:
27bee05f4c14a5be1987dd35455d7902

SHA-1:
7ee4230a2fb581361a1e6e077d81912656daf826

SHA-256:
7c026be2b60b4716263f4c5861ff7a876480e3ae5b3b30941268b4ec84e971a3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/30/2024 2:46:24 PM UTC  (today)

File size:
49.3 KB (50,496 bytes)

File type:
Executable application (Win64 EXE)

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
1536:pIb0qMhXOY9iVVxqIYH0vugGtdOVICKiVVmboeMoeqmCV+:pI0hX3WDtlYeqmCV+

Entry point:
4D, 5A, 40, 01, 63, 00, D0, 03, 00, 01, 5C, 00, FF, FF, 54, 0B, BA, 05, 9F, 00, 00, 00, 00, 00, 1E, 00, 00, 00, 01, 00, 0C, 00, 26, 0A, 03, 00, 00, 00, 0A, 00, 00, 00, 15, 00, 00, 00, 1A, 00, 00, 00, 30, 00, 00, 00, 35, 00, 00, 00, A2, 01, 26, 0A, A6, 01, 26, 0A, AA, 01, 26, 0A, 5D, 00, 00, 00, 62, 00, 00, 00, B0, 01, 26, 0A, B4, 01, 26, 0A, B8, 01, 26, 0A, BC, 01, 26, 0A, 70, 00, 00, 00, 75, 00, 00, 00, CC, 01, 26, 0A, D0, 01, 26, 0A, 86, 00, 00, 00, D6, 01, 26, 0A, 8E, 00, 00, 00, 93, 00, 00, 00, E6, 01...
 
[+]

The file propol.exe has been seen being distributed by the following URL.

Scan propol.exe - Powered by Reason Core Security