tcl803.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www4.ncsu.edu.
MD5:
2d1e95940b4ca67791ee4cbb81495473

SHA-1:
1df494be01f4e757b8e07569c8d677430f5c0561

SHA-256:
ca36a3ac142761a24b1029f2712573cf8a4d2b8c2d8d5eddf121aee619050b2f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 8:59:02 AM UTC  (today)

File size:
1.8 MB (1,868,958 bytes)

File type:
Executable application (Win16 EXE)

File PE Metadata
OS version:
77.10797

OS bitness:
Win16

Subsystem:
Windows GUI

Linker version:
2.0

CTPH (ssdeep):
24576:0cS2ZhkDIU3cGopLSgtxj/8BhI7AkVZOs4YyDYEJiM4SPQ6mCOyawv1R600a:TNasKro3xY8Ul0EJrhoOviVa

Entry address:
0xA0009A

Entry point:
4D, 5A, 9A, 00, 03, 00, 03, 00, 20, 00, 00, 00, FF, FF, 48, 00, FF, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 01, 00, FB, 30, 6A, 72, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 04, 00, 00, AA, 01, 00, 00, AE, 01, 00, 00, B2, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9992  (probably packed)

Code size:
192 KB (196,610 bytes)

The file tcl803.exe has been seen being distributed by the following URL.

Scan tcl803.exe - Powered by Reason Core Security