servicetool.exe

ServiceTool

Canon Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from www.rattaphumcity.com and multiple other hosts.
Publisher:
Canon Inc.

Product:
ServiceTool

Description:
Service Mode Tool

Version:
1.074

MD5:
460d27e8b3e5b8c73ca34c1f0a50c70a

SHA-1:
6bb672f6e1a476b38b4c67b4a4dcba568cd70385

SHA-256:
52153691c0f86391c4d4f6d1bf6d462cf08f97f8c1b8273423f3a2bbf45d2723

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 7:00:40 PM UTC  (today)

File size:
300 KB (307,200 bytes)

Product version:
1.074

Copyright:
(C) Canon Inc. All rights reserved.

Original file name:
TOOL0006V1074.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\servicetool.exe

File PE Metadata
Compilation timestamp:
3/10/2010 7:44:03 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.0

CTPH (ssdeep):
6144:elBLO17itLlXDflaw0jAY5tYBSN5Jbwhr7XRZQEP:elBO17it5XhEAYtsrDsEP

Entry address:
0x15693

Entry point:
6A, 60, 68, A8, 59, 43, 00, E8, 25, 2D, 00, 00, BF, 94, 00, 00, 00, 8B, C7, E8, 95, FB, FF, FF, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, FC, 12, 43, 00, 8B, 4E, 10, 89, 0D, 60, 21, 44, 00, 8B, 46, 04, A3, 6C, 21, 44, 00, 8B, 56, 08, 89, 15, 70, 21, 44, 00, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, 64, 21, 44, 00, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, 64, 21, 44, 00, C1, E0, 08, 03, C2, A3, 68, 21, 44, 00, 33, F6, 56, 8B, 3D, 3C, 12, 43, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v7.0

Code size:
192 KB (196,608 bytes)

The file servicetool.exe has been seen being distributed by the following 30 URLs.

http://www.rattaphumcity.com/.../index.php?PHPSESSID=4ab62135191b995d7cc2fa0b37140c45&action=dlattach;topic=2304.0;attach=5767

http://download1739.mediafire.com/14cu248jbldg/.../servicetool.exe

https://docs.google.com/uc?id=0B2Hx-KlGH-gkZnFVTC15SHozazg&export=download

http://download1739.mediafire.com/bbbrok0ezt5g/.../servicetool.exe

https://mega.nz/temporary/.../4pdWEZbA

https://mega.nz/persistent/.../4pdWEZbA

http://download1739.mediafire.com/7cbma47xabig/.../servicetool.exe

https://dl.boxcloud.com/bc/4/.../5QHrZlCKb0K7PgmkGgpR9dzJepX-qckfiHborO6pf5wtZRIBEgzIUpLk5uwj-O_90M_tNJDLxAJ1jZPKKKnHziEAlw1AA0jOBkDfsoNmh8suczDNEjwqM1L6ubC7OTOijwtjGvb6wRh_eY-PRN-Q_D9Iwk8XV40AOCC5LjAeLVPCBOC2PxhX4OYucJ3LVq1zFBebDgB2ngO1l58uC2WBxq6-8KOSMy7_5ZtHtwFcHvx6agdaWm_Z52lhv9jeVUyehyON8eWSdbupTmCLBhGb7H-49_5lWtVXVcq8xvJOWBHJEREJq7gTG5fC8BoBVWkVS0bxH3qIiheRnkJbtJVPy-n1W5PcG0fhFpetzNE4K2lozd0PXc4Fe07WvSS3et4yYRVSJO-v9z9GtIZxvAhmjUh6VntOE3g7asSVldxvE_BOu9SCuyVijS0kGFavlkCIQAf-puHgo1K-FgD5gselVyfWE2tUZP9fXbw1Q_1w6sCPfk4ddzA61dE0qmulLVm0zPVwPjLIGDimSkKAQMjhCpUvX9DpwAz9Om6UhmPFWZ7WI2d5l6kSsolmJH6zbEq3Z4YDpFYzl1g70UGc-rHe731cW5O5LMhowWtYr9_wX4Huu8QPy2MlKLCFWY4l9EdhECM4ueNZLR5OUXuGN4FVcLA34ltYS7s9rXWLQZu1NmD32jiOsOspSxB6O5O3f7FBtXZWH5kr-wSVQekJS6pIQtOoeMqsVvolz4Cm0yLhJvLb8CVWf1dsij4HvfI0-BlpduW8BoSVqX8OjV9OWPtl5DydDcYRBzkwl_IVTKoWKjfJFCxALqgoAJM-n6elBcOPycXIwwTWqt9sCano8wE5cyjV6Usy8NaWaFMp3-eaB2lS1TgNEZ1NpStx3GvJIlKbu_KCB0blMpLJn2YvnSe0q2ZRl8fmkJypnGcccBm77i

https://docs.google.com/uc?authuser=0&id=0B3tIa1xeUwaYV3kxZXdFeFd3bzA&export=download

http://download1346.mediafire.com/5wvvvpvc2w6g/.../ServiceTool_V1074.exe

http://download1739.mediafire.com/x7fi2yjlebwg/.../ServiceTool_V1074.exe

http://download1739.mediafire.com/8g2udsp46sxg/.../servicetool.exe

http://download12.mediafire.com/3aown6ixlvrg/.../servicetool.exe

http://199.91.153.26/azrjj8nnberg/.../Unloked.ca.non.mp..exe

http://download1739.mediafire.com/ugm47qikegkg/.../ServiceTool_V1074.exe

http://dc352.4shared.com/download/.../ServiceTool_V1074.exe

https://onedrive.live.com/.../eNFwpGHhF3tCkkGeg=1&ithint=.exe

http://downloads.ziddu.com/downloadfiles/.../ServiceTool.exe

temp:ServiceTool_V1074.exe

Latest 30 of 30 download URLs

Scan servicetool.exe - Powered by Reason Core Security