setup.exe

This is a setup and installation application. The file has been seen being downloaded from admin.thmagno.com and multiple other hosts.
MD5:
f1804c8b9c9ef968ef90928d793fdbdb

SHA-1:
f619b5a1b7fd03141f85e60fba65e7a222fcef98

SHA-256:
bca879fd8125b97d1331c272ed2c1cbf88a5bf3fa9b4d330e3ca78cbc603822c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 2:33:07 AM UTC  (today)

File size:
2.8 KB (2,842 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\setup.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
48:Y/McjGCHgVSUa/naZ0hEzC78Nh7SdWiz/uBBBpbBNjmBCAW9plsu3j:ji9Hvr/n00j78Nh7SdWiz/gBBpV+oN

Entry point:
0A, 3C, 21, 64, 6F, 63, 74, 79, 70, 65, 20, 68, 74, 6D, 6C, 3E, 0A, 3C, 68, 74, 6D, 6C, 3E, 0A, 3C, 68, 65, 61, 64, 3E, 0A, 20, 20, 3C, 73, 63, 72, 69, 70, 74, 20, 74, 79, 70, 65, 3D, 22, 74, 65, 78, 74, 2F, 6A, 61, 76, 61, 73, 63, 72, 69, 70, 74, 22, 20, 73, 72, 63, 3D, 22, 2F, 6C, 70, 72, 65, 73, 6F, 75, 72, 63, 65, 73, 2F, 6A, 73, 2F, 6C, 69, 6E, 6B, 76, 32, 2E, 6A, 73, 22, 3E, 3C, 2F, 73, 63, 72, 69, 70, 74, 3E, 0A, 20, 20, 3C, 73, 63, 72, 69, 70, 74, 20, 74, 79, 70, 65, 3D, 22, 74, 65, 78, 74, 2F, 6A...
 
[+]

The file setup.exe has been seen being distributed by the following 10 URLs.

http://admin.thmagno.com/8gLTED-O9uYAjCrOUYStC-ekD5SCCyTn_J_jLnSPKvLZfV2ihV1JzeonVODkbknXSLIMqk98Sr1-8L1bmdeQvNQOenLG9i8QX8nwSK7hOkqmf_G-WhlWIijITwxk41s9NolesSTV68Sq3fEZzzsBqyMKpAT3bch3r44hH3B03otX8537sFuNXqTGkEosu3UTvMb_ChzwM8Q0VMk3tsG060VpDOQSS61CsirNsbMaOSOzY36JB_a2cLxujWsmXybr7Gvj7a6ISY8XlDYKiRnhWX1HddKU6WEuGdEsQx83in_q0gGerd4Yiqb5hpBYdAFq3WCN1qWaH4gVzvAx0JA0G5xwHvQwBEZ-m9gdkzVmP946vd9eDO5C1JIgr9xz8k6ogKEr36KNSMeVRkH3Vrb8WGJP_grQIc-7JPgJ43YsSfWiRF4n761OC7x4kRSMaZBY

Scan setup.exe - Powered by Reason Core Security