smemosetup271.exe

SMemo Setup

SMYSoft

This is a setup and installation application. The file has been seen being downloaded from mestarkim.tistory.com.
Publisher:
SMYSoft

Product:
SMemo Setup

Description:
SMemo Setup program

Version:
2, 7, 1, 0

MD5:
42265899196e911ee7fec465c59820a2

SHA-1:
1ed318ba4ac79cd7e321fc70cde81866933d8f35

SHA-256:
7b6217d10703b818cc0b254c4b38559f3cebde97c185482dd59b31dd3bd6ae5e

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/15/2024 12:31:15 AM UTC  (today)

Scan engine
Detection
Engine version

Comodo Security
UnclassifiedMalware
17943

Norman
Suspicious_Gen5.AAVXI
11.20140428

File size:
3.5 MB (3,705,344 bytes)

Product version:
2, 7, 1, 0

Copyright:
Copyright (C) 2005 ~2012

Original file name:
SMemoSetup.EXE

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
11/19/2012 8:55:45 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:87Livddyf2kqdvz7szTL3zoJ8uPZFmEJ3l+:h1y2dRY8CuPZF/J3l+

Entry address:
0x3A3E9

Entry point:
E8, 7D, 82, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 56, 8B, 75, 14, 57, 33, FF, 3B, F7, 75, 04, 33, C0, EB, 65, 39, 7D, 08, 75, 1B, E8, AC, 26, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, 77, 15, 00, 00, 83, C4, 14, 8B, C6, EB, 45, 39, 7D, 10, 74, 16, 39, 75, 0C, 72, 11, 56, FF, 75, 10, FF, 75, 08, E8, D3, 16, 00, 00, 83, C4, 0C, EB, C1, FF, 75, 0C, 57, FF, 75, 08, E8, C2, 22, 00, 00, 83, C4, 0C, 39, 7D, 10, 74, B6, 39, 75, 0C, 73, 0E, E8, 5D, 26, 00, 00, 6A, 22, 59, 89, 08, 8B, F1, EB, AD...
 
[+]

Entropy:
7.8963  (probably packed)

Code size:
348.5 KB (356,864 bytes)

The file smemosetup271.exe has been seen being distributed by the following URL.

Scan smemosetup271.exe - Powered by Reason Core Security