rv1960_reina_valera_1960_con_strong_20110722.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from download916.mediafire.com and multiple other hosts.
MD5:
7dc5d48696f89823856709f338e75303

SHA-1:
c256a539d07633749a3519af0daf4c50f9205105

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/5/2024 7:06:35 AM UTC  (today)

Scan engine
Detection
Engine version

Qihoo 360 Security
HEUR/Malware.QVM06.Gen
1.0.0.1015

File size:
3.6 MB (3,749,520 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\documents and settings\administrador\escritorio\misc\e_sword\rv1960_reina_valera_1960_con_strong_20110722.exe

File PE Metadata
Compilation timestamp:
9/16/2008 8:17:44 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
98304:PUC5P9SF5j0++jvgZ1PMEkQZxVP/JGpC649JUdMX5:oB+rs5nkQXV3JGpC6WJUdI5

Entry address:
0x1000

Entry point:
E8, 6F, 2B, 00, 00, 50, E8, 73, 36, 01, 00, 00, 00, 00, 00, 90, 55, 8B, EC, 53, 56, 57, 8B, 7D, 10, 8B, 5D, 0C, 8B, 75, 08, 8B, D3, FF, 75, 14, 68, E5, 50, 41, 00, 6A, 00, 6A, 00, 8B, C6, 8B, CF, E8, 7A, 48, 00, 00, 81, EB, 10, 01, 00, 00, 74, 05, 4B, 74, 14, EB, 57, FF, 75, 14, 6A, 66, 56, E8, DE, 38, 01, 00, B8, 01, 00, 00, 00, EB, 47, 66, 81, E7, FF, FF, 66, FF, CF, 74, 07, 66, FF, CF, 74, 23, EB, 30, 68, 80, 00, 00, 00, 68, AC, 69, 41, 00, 6A, 65, 56, E8, 24, 38, 01, 00, 6A, 01, 56, E8, FE, 37, 01, 00...
 
[+]

Entropy:
7.9831  (probably packed)

Code size:
80 KB (81,920 bytes)

The file rv1960_reina_valera_1960_con_strong_20110722.exe has been discovered within the following program.

e-Sword  by Rick Meyers
e-Sword is a Bible study computer software package created by Rick Meyers and developed for Microsoft Windows. The user interface is available in twenty seven different languages. Resources are available in over eighty languages.
www.e-sword.net
6% remove it
 
Powered by Should I Remove It?

The file rv1960_reina_valera_1960_con_strong_20110722.exe has been seen being distributed by the following 22 URLs.

http://download916.mediafire.com/lqeal9de2jlg/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download1160.mediafire.com/ww2xxi28f6wg/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://205.196.123.81/k48ch2kejd3g/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download2136.mediafire.com/q6f9qoby4iyg/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download609.mediafire.com/uco2enorn73g/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download2136.mediafire.com/0cffscmrdqsg/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download609.mediafire.com/kluh299vy3ag/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download809.mediafire.com/lubwpe2uycug/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download2136.mediafire.com/49s9gnkwryrg/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download2136.mediafire.com/f0rwrgj85y6g/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download916.mediafire.com/gi6g5rh7ocig/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download900.mediafire.com/rd2byuk8uktg/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download1269.mediafire.com/5cbgy35e76og/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe

http://download999.mediafire.com/6f3ehrf729hg/.../RV1960_Reina_Valera_1960_con_Strong_20110722.exe