Supremo.exe

Supremo Remote Desktop

Nanosystems Srl

This is a setup program which is used to install the application. The file has been seen being downloaded from dw.uptodown.com and multiple other hosts.
Publisher:
Nanosystems S.r.l.  (signed by Nanosystems Srl)

Product:
Supremo Remote Desktop

Version:
1.5.3.1020

MD5:
0a2447ff54fb9f9810d32c74158b904b

SHA-1:
a03284fa5be5f7549a18a45ab0793de51c5e5189

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:46:05 PM UTC  (today)

File size:
1.9 MB (1,990,456 bytes)

Product version:
1.0.0.0

Copyright:
Nanosystems S.r.l.

Trademarks:
Nanosystems S.r.l.

Original file name:
Supremo.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
GoDaddy.com, Inc.

Valid from:
1/30/2012 3:44:38 PM

Valid to:
1/30/2013 3:44:38 PM

Subject:
CN=Nanosystems Srl, O=Nanosystems Srl, L=Folignano (AP), S=AP, C=IT

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
0470906DFFA2BF

File PE Metadata
Compilation timestamp:
2/1/2012 11:37:55 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:0LbHnbNGrFO+OBp45ebQNTdXPCUOESSsIBP:ybHRGZO9Bp45ebIZFLSSsIN

Entry address:
0x67BCB0

Entry point:
60, BE, 00, 20, 8C, 00, 8D, BE, 00, F0, B3, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89...
 
[+]

Packer / compiler:
UPX 2.90LZMA

Code size:
1.7 MB (1,810,432 bytes)

Windows Firewall Allowed Program
Name:
C:\install\Supremo.exe


The file Supremo.exe has been seen being distributed by the following 4 URLs.

http://dw.uptodown.com/dwn/wLuUINLjL8Fy7t2xrXiZLccbUKlEi7qoPgyL0DfNk5nrU4wTrAxIeOXC21kORR0xLKhgs60meVbrVGcesJp2HVTHjTx8iRckJ0NttWqZc0ZxDQgbPVfjpx1XAwRVN9cq/IyI-qJwaWXlBusqjFKF6Roh5HvibLzty-NpDRtxbpziifvokR0vFnJIRW_v0nT87Dzjmne0VHnCgxmC5hu-1pY8TGKBNeqeJsISknl5RA2lgksjpx2rNNgoJm7ly-pG_/fFpIf7SS9qeZNT-xf2uPRhMjzlN7PPtNgjsshWLOGE5ZAIuX8JwORVB6YIP5f-E98E7_1NVCqiHNqbxtDs6efst4ivPnkh_TLURzLTf-9QhgvBkiUmhB1CIJlRWOlXUq/.../

http://dw5.uptodown.com/dwn/Oq2zHQxiORazvGQk56rLkNCkSETYjfOTUyPO65XVVg9_h_smLRRmIyz8rZLZnt91TKL3SVD05lM-DpLEIbW-LEVHXHb4abXrrKcYzkO4-15PtqxMfh1XF10ABrCyg2Nf/PmEK6sYWoRDwOrTts2Q0taWPyrYfLYAJZERLHqMBYB19WLG3HBmy2hpZlBotxIkkVbhtTAjXF90ZPgxANo1VVUTmZ7PoSYFByy5XBE9pvYtNoI1QwQbMzRrY9-p8XZWT/yH0ihd_aymhC3OdMqgKdgly1b5EsIQiZYv7251TRFDS_5m9XRN4XZZVZ3-cZpXfkY0wXzAN9ZtM6X9Suzquxsjd7PbT5x716vCX-8EyXFjBCrExDU4JwZRuHAtv6v64n/.../supremo-1-5-2-en-br-de-it-ru-win.exe

http://dw.uptodown.com/dwn/OirfXuOQL8xbg-v6WHactpR1KnKXLS2VtXuRrqeceTgkA8yzK6CmVKUvhWqDOTzUyOWCDAWICI31jn0I8pI6-wEU2QvDgFaIujrJAsozwk0tSqVwnMDoX57DNGHK6nac/Is50sTSOKihR_Z-O8Wq0LsC7EXMTRJnXklNjefvEAXIVC8ApBUxZhNTPZB417Bw6aQyu2JrKHGz45Y1P0WFkJl_aJm8UkwPRE0GaI9lBUBdQSS5XDBbJTlX4wfOI7HlW/tsvAAFJqSdx2l9k08glTazvW0Ywqdv5JB8ywI3pX6npD_gomxu2u652KZCv7R6ALQoPOwONHyvraEJPLZZxWAerCzdtDrjkOSdVtt6JBzDGTbDnZ5yE7JuoG0oQjW6tF/.../

http://dw.uptodown.com/dwn/vUIfI7ML_F1ZptwlP-aijrUB2y3T0KD5kFFGAtizl3zXOGUrUcj_wFm5l3ywvglIcXeiDRP6_ZrymKL4kYkZn2f8wwITSwqmT2_Ag12n2LFrVa6Ab0NOa4Cny-zmPQJg/jeRUs9NRXUJCcpiSuUpEqaZe_r1J2IVnhiWu6ifcxig2qfsgR5c9ojLhNkrjGwAgJ2p5rFeMUJzNUIFKIrEkmVRCyYFyc8vaXpTyXV1cM_8FTwzBwMoOO1Of2yeYECoE/4NLTu4eLFRQzIbCzgtOGtVIBeHZHAi7fyGdN5QdM89SEWbEunxLXhzh-ylpangg4H1ISMbcvQaI1YUAwu5j_at4iK2R8PgAA_tU5mMVJ41Hy4Bji3cNSn5dX7cxQwCPN/.../

Scan Supremo.exe - Powered by Reason Core Security