tastyplanet2demosetup.exe

The program is a setup application that uses the Nullsoft Scriptable Install System installer. The file has been seen being downloaded from www.dingogames.com.
MD5:
d94e81bfd3a900549ce6acacf919f546

SHA-1:
bbb813c95eaa43064e9c27f2baa6c22ff94f9dc2

SHA-256:
9411e9b6a3e15a197768460c7e28a4fce9dea644a9ea8f8b9a1cd7ee46cacc8d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 1:13:18 AM UTC  (today)

File size:
18.6 MB (19,469,168 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Scriptable Install System

Common path:
C:\users\{user}\downloads\tastyplanet2demosetup.exe

File PE Metadata
Compilation timestamp:
12/5/2009 11:50:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:/ftGMC4MjwNzk5gTfuJUCJIFAskL0t3CfV5U6w2liyX7LrR:cuNzKCflwIFuI0HfwaiyX7Ld

Entry address:
0x30CB

Entry point:
89, D6, 68, EF, 65, EC, 00, 33, DB, F6, C2, 60, 8D, 3D, D6, 4D, AE, 2A, 87, C0, 4D, 68, C6, A7, 7F, 00, 57, C6, C6, 89, C6, C0, 3D, 69, D6, 16, A4, 98, E6, 28, D4, E8, 5E, 00, 00, 00, 87, F0, 29, D9, 87, C2, 88, F0, 81, FA, 4A, 14, 00, 00, 72, 06, 69, C0, 6C, 36, CD, 79, 69, D0, E0, 28, D3, 8F, FF, CA, 49, 81, F1, FC, 09, B6, E0, 2B, ED, 38, D1, FE, C8, 8D, 0D, 86, CE, CA, 3E, 33, ED, 85, FF, 77, 08, 69, C2, 12, 31, 86, 5A, FF, C6, 2A, C1, 8B, FD, 3B, C7, 0F, B7, F6, 2C, 07, 81, FB, 36, 74, 00, 00, 70, 08...
 
[+]

Code size:
22.5 KB (23,040 bytes)

The file tastyplanet2demosetup.exe has been seen being distributed by the following URL.

Scan tastyplanet2demosetup.exe - Powered by Reason Core Security