shark_setup_v1.0.4.3.exe

InstallShield

杭州缪斯客网络科技有限公司

This is a setup and installation application. The file has been seen being downloaded from st.xiami.com.
Publisher:
Hangzhou Miusike Network Technology, Inc.   (signed by 杭州缪斯客网络科技有限公司)

Product:
InstallShield

Description:
Shark Setup

Version:
16.0.435

MD5:
c14e04ca7327a5fa5a6207b8b37f3986

SHA-1:
6b5a7a00b440126065a2154cd155565e636fc804

SHA-256:
2909048d9c33cf0bb518e2d2979df0edebc7b51735124d41df2b32618b6289a1

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/28/2024 10:02:13 AM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
TROJ_GEN.F47V0725
7.2.62

File size:
8.3 MB (8,731,976 bytes)

Product version:
16.0

Copyright:
Copyright (C) 2009 Hangzhou Miusike Network Technology, Inc. and/or InstallShield Co. Inc. All Rights Reserved.

Original file name:
Setup.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\shark_setup_v1.0.4.3.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
8/21/2012 8:00:00 AM

Valid to:
8/22/2014 7:59:59 AM

Subject:
CN=杭州缪斯客网络科技有限公司, OU=软件开发部, O=杭州缪斯客网络科技有限公司, L=hangzhou, S=zhejiang, C=CN

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3C638F1EDD55B84754DE055CD4530061

File PE Metadata
Compilation timestamp:
1/22/2010 6:31:45 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:wkJdJZy9UuNlxjwyA4EwIXoFhzIf/66f/knpehpeVZqkS2jS:FrJSd8fbshz+Df/knohoH92

Entry address:
0x3D64F

Entry point:
55, 8B, EC, 6A, FF, 68, 50, 85, 46, 00, 68, 48, F2, 43, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 28, 73, 46, 00, 33, D2, 8A, D4, 89, 15, F8, DC, 47, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, F4, DC, 47, 00, C1, E1, 08, 03, CA, 89, 0D, F0, DC, 47, 00, C1, E8, 10, A3, EC, DC, 47, 00, 6A, 01, E8, 18, 38, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, C3, 00, 00, 00, 59, E8, FD, 14, 00, 00, 85, C0, 75, 08, 6A, 10, E8, B2, 00, 00, 00, 59, 33, F6, 89, 75...
 
[+]

Entropy:
7.8598

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
407 KB (416,768 bytes)

The file shark_setup_v1.0.4.3.exe has been seen being distributed by the following URL.

Scan shark_setup_v1.0.4.3.exe - Powered by Reason Core Security