sataide_xp32_101028.exe

The program is a setup application that uses the WinZip SFX installer. The file has been seen being downloaded from download.biostar.com.tw.
MD5:
9634edd5ae4a1cc47a2100175cda0ba7

SHA-1:
5195c13ffe2dd224c12cb7ee0fd53671cb4f964d

SHA-256:
862571e8526c5c8ab7ba7ff81a815050439f7b67d1e1a69037c1f0512577ce50

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/27/2024 4:22:39 AM UTC  (today)

File size:
299.5 KB (306,688 bytes)

File type:
Executable application (Win32 EXE)

Installer:
WinZip SFX

Common path:
C:\users\{user}\videos\j100mu rrotç\sataide_xp32_101028.exe

File PE Metadata
Compilation timestamp:
1/9/2001 11:08:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.10

CTPH (ssdeep):
6144:uzAryu4V3Qb3kfiDRBqW2rXC+nGyY4BbdHEiKRmb5H3lNLvFhahD:uzC4BQA6DRBdcSiYmbYRoVlNFhaR

Entry address:
0x39D8

Entry point:
1D, CE, 44, 29, BA, 0F, AF, D2, 46, F6, C7, 00, 81, D1, DC, DD, 1B, 0A, 0F, BF, D2, 8D, 2D, 94, A8, 69, 63, 42, C7, C6, 83, 3F, ED, F0, F2, 85, C8, 71, 07, B8, 6C, 4E, CD, 93, 88, C0, E8, 1B, 00, 00, 00, 8D, 15, 43, 88, D5, E7, 8D, 15, 30, 85, 1F, 49, F3, 88, F9, F3, 33, DB, 85, E8, 78, 05, 85, DD, 0F, B7, D2, 5E, 31, ED, 8D, 3D, 71, 2C, 7B, DC, F6, C3, 30, 80, C0, 3C, 80, FF, A5, 8D, 1D, 51, 3A, 13, 8E, 0F, AF, D2, F6, C0, A3, 84, DA, F6, C3, 45, FE, CB, BF, E7, BE, 00, 00, 89, F1, 88, C9, 39, C9, 81, F7...
 
[+]

Code size:
18.5 KB (18,944 bytes)

The file sataide_xp32_101028.exe has been seen being distributed by the following URL.

Scan sataide_xp32_101028.exe - Powered by Reason Core Security