setup_2.exe

Spirited Technology

This is a setup and installation application. The file has been seen being downloaded from s7094.chomikuj.pl and multiple other hosts.
Publisher:
Spirited Technology

Description:
Pokemon PC 2.0 Setup

MD5:
e7408e8f19992eaff6da6e4895684784

SHA-1:
d610c5eb86c53c303ea3e6a5400d86c4d13a244d

SHA-256:
a51897dec76ffc8364bc8ae5692f3f9afef0e0d11cc3ee722ea1384b04e7d44f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 6:41:13 PM UTC  (today)

File size:
4 MB (4,159,580 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:tpv8f+12qh6pyRiZsQMeKGCUfgoCyxNuV:8f82qhIIihMemgNxNg

Entry address:
0x916C

Entry point:
55, 8B, EC, 83, C4, C0, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, C4, 89, 45, C0, E8, 63, 9F, FF, FF, E8, 46, B4, FF, FF, E8, C1, D6, FF, FF, E8, 08, D7, FF, FF, E8, 0B, F6, FF, FF, BE, 34, C0, 40, 00, 33, C0, 55, 68, 8E, 98, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 1E, 98, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, B0, 40, 00, E8, EC, FE, FF, FF, E8, A3, F9, FF, FF, 8D, 55, F0, 33, C0, E8, ED, ED, FF, FF, 8B, 55, F0, B8, 98, BD, 40, 00, E8, 14, A0, FF, FF, 8B, 15, 98, BD, 40, 00, B8, 9C, BD, 40, 00, E8...
 
[+]

Entropy:
7.9982

Developed / compiled with:
Microsoft Visual C++

Code size:
34.5 KB (35,328 bytes)

The file setup_2.exe has been seen being distributed by the following 9 URLs.

http://s7094.chomikuj.pl/File.aspx?e=145z3RVsa1-SdOjzBNcIjuhsA5bCwT11gKtRTSiLmZB06qVaskhq-fifXS59A3MwVEE4X7J5L8nka8Ad9Ve2tiWnVpQS7pl2I1OsuDzf3kGa2IQttHzIQiP1H8DOyvE7DR2tVXZYlmsoLXBDS-WkiDnsRW5MfaA-Eg1nckYE5Nc&pv=2

http://s7094.chomikuj.pl/File.aspx?e=145z3RVsa1-SdOjzBNcIjvF4Vp5iKU3epP6PqYxzjXePXoDglM-9slBkvX3ah8uEVXhaLb_krSvtDr5G7LJYr4s9xHgPYUxDBjnLMsaBerlQOPLkmeg-brQRxCDoNjKZ&pv=2

http://s7094.chomikuj.pl/File.aspx?e=145z3RVsa1-SdOjzBNcIjlQOb5e1_q1ty5T4m7WhTZOTdF6uHMmdv0MJ-kVJSa9--7Oyu7ROu9WGfQv0OMIGesPknTAOEnKXpGX87_t1iRnRAxCPblg7YHOZVIY3kAN3&pv=2

http://s7094.chomikuj.pl/File.aspx?e=145z3RVsa1-SdOjzBNcIjuCvGZPPDwam0reZS4BlU1fB6l5oqe4z7somjJOxHLdVjTVzZk4WZ1KN9djqnkQULaBdTF_h8_O6Igf8N-W2s02V9SLZqMvV-8Xl9Q7o50er&pv=2

http://s7094.chomikuj.pl/File.aspx?e=145z3RVsa1-SdOjzBNcIjvCflTgIk5FgxOnTZ9GnbGFGm3fxG3_KaKdOhdDQhxzs7gnXpGLNqz1w7FlrLiZmwFiwVWTRmu6e8JNu9uezAnSIavfkxkoaZr5YEejEJciFKbB4uUjaWhfOSnoyGoyoiA&pv=2

Scan setup_2.exe - Powered by Reason Core Security