qt-creator-windows-opensource-2.6.2.exe

Digia Plc

This is a setup program which is used to install the application. The file has been seen being downloaded from software-files-a.cnet.com and multiple other hosts.
Publisher:
Digia Plc  (signed and verified)

MD5:
01f55685df02ace8f5aa054b7be9e6a3

SHA-1:
ef68c8cd048d0b4b16aa33f0ad25a71989983981

SHA-256:
a9b0c22aab828412af0fb892d6c662fc7d92d1e68f4aa9d5dfc655abcb2e98a3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 10:34:08 PM UTC  (today)

File size:
51 MB (53,506,768 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\qt-creator-windows-opensource-2.6.2.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
1/12/2012 3:00:00 AM

Valid to:
1/4/2014 2:59:59 AM

Subject:
CN=Digia Plc, OU=Qt Commercial, O=Digia Plc, L=Helsinki, S=Helsinki, C=FI

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
54FE701E87914CEE5C1BADD7F408C8D8

File PE Metadata
Compilation timestamp:
12/3/2012 11:26:54 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
786432:weo4Z8qr9ZEJLnhqAAPvNp+/2UWtz4eJnz/JE79uZvmPj7RywUHH:wb4ZDHE9nhqTj+OUCMITZR6ru

Entry address:
0x7CFD32

Entry point:
E8, B9, E1, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 53, 8B, 5D, 08, 83, FB, E0, 77, 6F, 56, 57, 83, 3D, B4, 88, F1, 00, 00, 75, 18, E8, 95, D9, 00, 00, 6A, 1E, E8, DF, D7, 00, 00, 68, FF, 00, 00, 00, E8, A8, 54, 00, 00, 59, 59, 85, DB, 74, 04, 8B, C3, EB, 03, 33, C0, 40, 50, 6A, 00, FF, 35, B4, 88, F1, 00, FF, 15, 8C, 83, CA, 00, 8B, F8, 85, FF, 75, 26, 6A, 0C, 5E, 39, 05, 4C, 91, F1, 00, 74, 0D, 53, E8, FC, E1, 00, 00, 59, 85, C0, 75, A9, EB, 07, E8, FA, 00, 00, 00, 89, 30, E8, F3, 00, 00, 00, 89...
 
[+]

Entropy:
7.8660  (probably packed)

Code size:
8.7 MB (9,071,616 bytes)

The file qt-creator-windows-opensource-2.6.2.exe has been seen being distributed by the following 2 URLs.

Scan qt-creator-windows-opensource-2.6.2.exe - Powered by Reason Core Security