tongbu_setup_3.2.6.0_zsgw_32bit.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from qd.tongbu.com.
MD5:
e62453a9ef337669046219f4a2f02287

SHA-1:
8b50691aef67b753ef07422899a64ab015b6721a

SHA-256:
e8398177ed0b4faba8660da84ce0d91ab3a43c257322ea6e1e916636e7c6e910

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 5:07:04 AM UTC  (today)

File size:
30.9 MB (32,368,560 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\tongbu_setup_3.2.6.0_zsgw_32bit.exe

File PE Metadata
Compilation timestamp:
4/10/2010 7:19:31 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
786432:/+BCGxnEqWHV8wAFaJ+ADxy1nFVqIRofsp/nz+N+6DkaK59yx7Tp:/+B3wMCy1FMGofw/zDi7Tp

Entry address:
0x354B

Entry point:
FE, CA, 4F, FE, CA, C7, C1, ED, 5E, 96, 86, FE, C5, F3, 31, CE, F7, C3, 0C, D0, E7, AF, 85, F5, 77, 06, 69, FE, D4, ED, 63, 94, 72, 03, FF, C3, 4D, F6, C4, 9A, FE, CD, 6B, C0, 00, FE, CB, 80, E5, 9C, 33, C6, 1A, DF, 74, 09, F6, C4, 06, 69, CD, DF, CF, 29, AE, BE, 00, 00, 00, 00, 81, F3, 01, CC, 81, 8A, 8D, 30, 8D, 0D, A9, 69, FA, 80, 30, F1, 8A, FA, 8B, CF, 8D, 16, 4F, 85, E8, 87, CF, 8D, 15, 3F, C2, 29, F5, 0F, AF, C3, 85, DD, C6, C4, 4B, 69, C0, C2, F6, B0, B0, F7, C5, 2C, A9, 1A, 99, FE, CD, 24, F8, FE...
 
[+]

Entropy:
7.9999  (probably packed)

Code size:
25 KB (25,600 bytes)

The file tongbu_setup_3.2.6.0_zsgw_32bit.exe has been seen being distributed by the following URL.

Scan tongbu_setup_3.2.6.0_zsgw_32bit.exe - Powered by Reason Core Security