Setup.exe

SoftCamp Secure KeyStroke 4.0 Installer

SoftCamp Co., Ltd

This downloadble file is typically blocked through Google's Safe Browsing technology in Chrome web browser. The file has been seen being downloaded from railplus.korail.com.
Publisher:
SoftCamp Co.,Ltd.  (signed by SoftCamp Co., Ltd)

Product:
SoftCamp Secure KeyStroke 4.0 Installer

Version:
1, 0, 0, 6

MD5:
1560111d8515cfa15a5b2c895d4afc99

SHA-1:
eb82a83578ecccdf913518085b94c716a40a1c24

SHA-256:
eab003e8998127f856a97b65da3d4f28cf64475ca28a807d67544bfb07be4549

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/22/2024 3:37:07 PM UTC  (today)

File size:
1.1 MB (1,140,160 bytes)

Product version:
1, 0, 0, 6

Copyright:
Copyright (C) 2008

Original file name:
SCSKXULInst.exe

Language:
Korean (Korea)

Common path:
C:\users\{user}\downloads\setup.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/20/2009 7:00:00 AM

Valid to:
8/21/2010 6:59:59 AM

Subject:
CN="SoftCamp Co., Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="SoftCamp Co., Ltd", L=Gangnam-gu, S=Seoul, C=KR

Issuer:
CN=VeriSign Class 3 Code Signing 2009-2 CA, OU=Terms of use at https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
58F6153FDAFBCB4F5F847D41B9CC0D3A

File PE Metadata
Compilation timestamp:
7/26/2010 2:27:08 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:DA4d405YWXyG9Y2iSW3WJ55URR405YWXyWO8ZWCnVyEQwUpyx5YnQWk/36:R4bWXxW3BR4bWXtOljpyxeC/36

Entry address:
0x90BD

Entry point:
55, 8B, EC, 6A, FF, 68, 38, A7, 40, 00, 68, 44, 92, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, D4, A2, 40, 00, 59, 83, 0D, D0, C7, 40, 00, FF, 83, 0D, D4, C7, 40, 00, FF, FF, 15, D8, A2, 40, 00, 8B, 0D, C4, C7, 40, 00, 89, 08, FF, 15, DC, A2, 40, 00, 8B, 0D, C0, C7, 40, 00, 89, 08, A1, E0, A2, 40, 00, 8B, 00, A3, CC, C7, 40, 00, E8, 17, 01, 00, 00, 39, 1D, D0, C6, 40, 00, 75, 0C, 68, 40, 92, 40, 00, FF, 15, E4, A2...
 
[+]

Entropy:
7.7221

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
36 KB (36,864 bytes)

The file Setup.exe has been seen being distributed by the following URL.

Scan Setup.exe - Powered by Reason Core Security