rec_11.082_pl_lite_[www.programosy.pl].exe

This is a setup program which is used to install the application. The file has been seen being downloaded from s5983.chomikuj.pl and multiple other hosts.
MD5:
83bc78159da1a7b1e0bcf878a520a59a

SHA-1:
6aaa4716c41c37c420b5bf9277c7dbad2823daa8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 5:51:21 PM UTC  (today)

File size:
5.9 MB (6,137,856 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\documents and settings\szkoła\pulpit\pulpit\rec_11.082_pl_lite_[www.programosy.pl].exe

File PE Metadata
Compilation timestamp:
6/18/2009 10:30:26 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
98304:I4PlWZhyrj9Etz6OLqI9myXB4nrS9AXE8viqUNGPD/Is/n5:I4PlSyrjatz6u9bB4nrNESiqUNGPrIs/

Entry address:
0x1000

Entry point:
EB, 10, 66, 62, 3A, 43, 2B, 2B, 48, 4F, 4F, 4B, 90, E9, 28, B7, 58, 00, A1, 1B, B7, 58, 00, C1, E0, 02, A3, 1F, B7, 58, 00, 52, 6A, 00, E8, AD, 91, 18, 00, 8B, D0, E8, 56, 77, 13, 00, 5A, E8, B4, 76, 13, 00, E8, 8B, 77, 13, 00, 6A, 00, E8, BC, 8A, 13, 00, 59, 68, C4, B6, 58, 00, 6A, 00, E8, 87, 91, 18, 00, A3, 23, B7, 58, 00, 6A, 00, E9, 87, EE, 13, 00, E9, EA, 8A, 13, 00, 33, C0, A0, 0D, B7, 58, 00, C3, A1, 23, B7, 58, 00, C3, 60, BB, 00, 50, B0, BC, 53, 68, AD, 0B, 00, 00, C3, B9, BC, 00, 00, 00, 0B, C9...
 
[+]

Code size:
1.5 MB (1,613,824 bytes)

The file rec_11.082_pl_lite_[www.programosy.pl].exe has been seen being distributed by the following 10 URLs.

http://s5983.chomikuj.pl/File.aspx?e=Tm3HHcOHbxQtuT6E6fVMQ25G33YBtU-PhhQaQ57Hm_fnUQZ6ka-PPRSzLTS_su6cXvCJyXg4EMGq2xFw8LL_jHWIHXFantMSaylXT-jBg1T6mdMcVGNs8xj7ya7EH9MTUsS7yP7SXF-Ck9KxDczvDA&pv=2

http://s10410.chomikuj.pl/File.aspx?e=Tm3HHcOHbxQtuT6E6fVMQxsOkJqILzxvTBFOlQoKW974_lzixxKLbZQ3SBbxgFZ9Zns_8GVOoz6YiztBctEuFF9BQdDqdECau57D8fKv8Iw2R3Xb31jt73G6pn3uoH0k0oyBT4xkMe7UY2mPUg1_FvSZCI3KLF3OVkveLRNPXc0&pv=2

http://www.programosy.pl/.../pobierz,recordic,1.html

http://s5983.chomikuj.pl/File.aspx?e=Tm3HHcOHbxQtuT6E6fVMQ25G33YBtU-PhhQaQ57Hm_fJGRtaFWn09ww7t8_9G8ZAHnzaVUnw8vJsFeAk8FPY3SvOTZtTof_F66AA7VEAiKc9zwaxEFLocn7Oue3c3_9OKr_uycfMA0HuqRxNcbyG1w&pv=2

http://www.07l.jawnet.pl/.../Rec_11.082_PL_Lite_[www.programosy.pl].exe

Scan rec_11.082_pl_lite_[www.programosy.pl].exe - Powered by Reason Core Security