replicafire.exe

Ronice Daniela da Silva

This is a setup program which is used to install the application. The file has been seen being downloaded from www.digisat.com.br.
Publisher:
Ronice Daniela da Silva

Description:
joanadark

Version:
1.0.0.0

MD5:
7e80a7703ca3f5a4211d8f1d8fe92cbd

SHA-1:
49600694959d176d1c84fc44e876f51982649507

SHA-256:
f67474553d2a1a81e72588d43f69a58d5c72fdc26f771a205eb80053271696bc

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 10:18:26 PM UTC  (today)

File size:
1.2 MB (1,275,904 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
Brazilian Portuguese

Common path:
C:\users\{user}\downloads\replicafire.exe

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:GBCRNM89FHILWRPrGgda5Z2pQFil9LlM5ZxN2nJgz0oh1W:GARR4WraGVW2n6z0oh1W

Entry address:
0xE4CE0

Entry point:
55, 8B, EC, 83, C4, F0, B8, 40, 32, 4E, 00, E8, 68, 24, F2, FF, A1, A0, 88, 4E, 00, 8B, 00, E8, 44, CA, F8, FF, A1, A0, 88, 4E, 00, 8B, 00, BA, 40, 4D, 4E, 00, E8, B3, C4, F8, FF, 8B, 0D, D8, 85, 4E, 00, A1, A0, 88, 4E, 00, 8B, 00, 8B, 15, C0, 19, 4E, 00, E8, 33, CA, F8, FF, A1, A0, 88, 4E, 00, 8B, 00, E8, A7, CA, F8, FF, E8, 0E, FC, F1, FF, 00, 00, FF, FF, FF, FF, 3A, 00, 00, 00, 52, 65, 70, 6C, 69, 63, 61, 46, 69, 72, 65, 20, 2D, 20, 52, 65, 70, 6C, 69, 63, 61, E7, E3, 6F, 20, 64, 65, 20, 72, 65, 67, 69...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
909.5 KB (931,328 bytes)

The file replicafire.exe has been seen being distributed by the following URL.

Scan replicafire.exe - Powered by Reason Core Security