setup_ca_en.exe

Setup TKexe

Torsten Krieg / TKexe, info@tkexe.eu

This is a setup and installation application. The file has been seen being downloaded from tkexe-kalender.en.softonic.com and multiple other hosts.
Publisher:
Torsten Krieg / TKexe, info@tkexe.eu

Product:
Setup TKexe

Description:
TKexe setup archive

Version:
1.1.0.2

MD5:
1de95665e290b20750e8d4a745f0583b

SHA-1:
11315f54433049ac7a1b502bcdf19055d2feae8e

SHA-256:
3b8d36fb8769e3e69aceef9e4c541136f840b2af349985a9b8ed2620d19d793c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 1:06:27 AM UTC  (today)

File size:
40.5 MB (42,462,472 bytes)

Product version:
1.1.0.2

Copyright:
Copyright by Torsten Krieg, TKexe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\setup_ca_en.exe

File PE Metadata
Compilation timestamp:
6/19/1992 6:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
786432:W0/6GZoMAqMLpAYPOb0eso0vuIIR2JmywCCpxNlSSjLIJQJV2jyyUhhH5rHYU6DN:t/6GZXAqUpAnb0ez0g1ywNpxTIYVKshY

Entry address:
0x30F0

Entry point:
55, 8B, EC, 83, C4, F4, B8, B8, 30, 01, 00, E8, 1C, EB, FF, FF, E8, 43, FF, FF, FF, E8, 7E, FF, FF, FF, E8, 15, FE, FF, FF, E8, 30, E6, FF, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9986

Developed / compiled with:
Microsoft Visual C++

Code size:
8.5 KB (8,704 bytes)

The file setup_ca_en.exe has been seen being distributed by the following 5 URLs.

https://tkexe-kalender.en.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAOXcWk/i WOGeImNQ/.../tQ5jAE9SiWEFrwQvF4nA32rkbnuhLZBdDkgNQ4eTkl4Vw2nTtLQ=

http://soft.mydiv.net/win/dlfile301de_224388/.../setup_ca_en.exe

Scan setup_ca_en.exe - Powered by Reason Core Security