sataraid_xp32_101028.exe

The program is a setup application that uses the WinZip SFX installer. The file has been seen being downloaded from download.biostar.com.tw.
MD5:
afb06065c00e7dd4cbb206fd9fcefe77

SHA-1:
977c105d19ea046f84b99bb4eaa797105a96c4e8

SHA-256:
9ff1f8f750e1eb5101328c2474b262546b66feb13abca952fee643e0aefb929f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 2:41:35 AM UTC  (today)

File size:
495.5 KB (507,392 bytes)

File type:
Executable application (Win32 EXE)

Installer:
WinZip SFX

Common path:
C:\users\{user}\videos\j100mu rrotç\sataraid_xp32_101028.exe

File PE Metadata
Compilation timestamp:
1/9/2001 11:08:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.10

CTPH (ssdeep):
12288:+zCeuyNwwrVwX7fFHDRBdcSiYmbYRohQu5pC/v:+zCeokwXzfBLi7Bau5I

Entry address:
0x39D8

Entry point:
81, FF, 28, CD, 00, 00, 70, 04, F2, F6, C0, 98, 85, D7, 74, 04, 8A, E5, 85, EF, 0F, B7, FA, 86, C2, 0C, DC, 69, DF, 7B, BA, A3, 4D, 89, C0, 0F, AF, EF, 0F, AF, D8, 85, EB, 78, 06, 81, E1, 48, D4, 6E, 98, E8, 00, 00, 00, 00, FE, C5, 15, 3D, AB, D2, A9, 8B, F1, F2, C7, C2, 06, 8B, A5, 7F, 03, F8, 30, DC, 8A, C1, C6, C0, 42, 59, 11, C5, 87, ED, 0F, AF, D7, F7, C0, 17, D7, 49, 29, 69, EA, 86, 01, 89, BD, B0, 51, 8D, 35, EC, 18, FB, 43, 81, C1, 94, 7F, 06, 00, 8B, D0, C6, C0, 62, 47, 81, C1, A5, 06, 00, 00, F7...
 
[+]

Code size:
18.5 KB (18,944 bytes)

The file sataraid_xp32_101028.exe has been seen being distributed by the following URL.

Scan sataraid_xp32_101028.exe - Powered by Reason Core Security