v2+dp+root.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from qc1.androidfilehost.com.
MD5:
663069f2654b357e19a4d9a475d83b5f

SHA-1:
41526e3ce9bb3eb19f422d6bb3bdd7d297b19280

SHA-256:
d041ba7f49239ac3b806e76b4550ac717e3dd638fb183845b232ea046470188c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 9:37:04 PM UTC  (today)

File size:
5.4 MB (5,651,825 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\v2+dp+root.exe

File PE Metadata
Compilation timestamp:
1/17/2015 3:55:25 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:q6xFxdC5JmzSdHPYv0ZEagBPd6Zn5OaoaG1H9Embebhxl:qeH2JS1qEacV69EUGtamabhv

Entry address:
0x1D62B

Entry point:
81, FB, 0B, 75, 00, 00, 78, 08, 69, E8, ED, 3A, 27, 92, B2, C0, 89, C3, 08, DF, 8B, F9, 71, 07, 0F, AF, C2, 43, 0F, B7, C1, 33, F3, 0F, AF, ED, FF, C2, 8D, 0D, 34, 34, D5, D6, 8D, 0D, 47, DD, 5F, 72, 13, D2, 88, F4, FE, CE, 08, F8, 89, FE, E8, 1E, 00, 00, 00, 8A, F6, B9, FC, A3, 33, 65, 8A, F0, 85, C8, 87, F2, 2D, AF, F0, 00, 00, 4F, 80, E1, 93, 0F, AF, DE, 05, 1F, 15, 00, 00, 0F, B7, ED, C6, C2, 33, 0F, AF, F5, 09, FE, 86, F6, 69, F6, 1F, 52, DC, 06, F3, B8, 2A, 00, 00, 00, F2, 86, DA, 02, F8, 6B, C0, 07...
 
[+]

Entropy:
7.8867  (probably packed)

Code size:
161.5 KB (165,376 bytes)

The file v2+dp+root.exe has been seen being distributed by the following URL.

Scan v2+dp+root.exe - Powered by Reason Core Security