spark_setup_all.exe

Spark

Baidu, Inc.

This is a setup and installation application. The file has been seen being downloaded from updown.browser.baidu.com.
Publisher:
Baidu, Inc.

Product:
Spark

Description:
Spark Setup

Version:
26.4.9999.1900

MD5:
41e8bed7c006d5f64d40b5b6c686adcd

SHA-1:
d3806b3d2361dcebba2dd7602405c3a1ee8c8a62

SHA-256:
af0c433f4997c994e54baeb7adf332566ec6356eb4808bbba6893b79d40ef20e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/30/2024 10:00:01 AM UTC  (today)

File size:
34.6 MB (36,311,688 bytes)

Product version:
26.4.9999.1900

Copyright:
Copyright (C) 2013 Baidu Inc. All Rights Reserved.

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\spark_setup_all.exe

File PE Metadata
Compilation timestamp:
4/10/2010 2:19:23 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
786432:VzIFHM4rHvnJSCnHi97cBQq5wzj8tf9GcJ4JGxrp7XyIbuEZ:VzIFHTDvM2Acaq6zwt/JP7XyMBZ

Entry address:
0x33E9

Entry point:
8D, 05, B3, 41, D2, 1C, 40, B0, 57, 8B, CE, 80, FD, 44, 8D, 35, 9A, E5, 98, 07, 89, C7, 89, C0, 8B, F1, 86, ED, 41, 20, CD, 89, FF, 68, BE, 1D, 00, 00, B5, AC, 0A, C8, 84, F3, 58, 41, C6, C1, B3, 88, C1, 6B, C0, 03, F2, 50, 0F, AF, CD, 2B, F7, 69, ED, D9, 74, 15, B8, 5A, 4F, C7, C5, 1E, 5C, 0A, A2, 81, F2, 42, 02, 00, 00, 81, FE, 16, 4B, BF, A0, 0F, BE, C1, 33, DA, 87, C0, 38, F7, 49, 8B, D3, 85, DB, 76, 02, 89, C3, 56, 8A, F2, E8, 22, 00, 00, 00, F2, F2, 0F, AF, C1, 85, C2, F2, BB, C5, 42, 50, 81, 28, D3...
 
[+]

Entropy:
7.9998  (probably packed)

Code size:
25 KB (25,600 bytes)

The file spark_setup_all.exe has been seen being distributed by the following URL.

Scan spark_setup_all.exe - Powered by Reason Core Security