WakeUpSetup.exe

WakeUp

Noël Danjou

This is a self-extracting archive and installer. The file has been seen being downloaded from noeld.com.
Publisher:
Noël Danjou  (signed and verified)

Product:
WakeUp

Description:
WakeUp Installer

Version:
2.0.6.1

MD5:
cd981559041e70fd5bde40484c1c9f4f

SHA-1:
c98fd7e2eb9d78ba9bc8d322e18c21a8a74a1aac

SHA-256:
dc2f29b9b000177353f1da93bd91669e0d25543f25aba80dd1fe7945cd8e342c

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
11/5/2024 1:33:35 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Packed
1.3.0.7717

Qihoo 360 Security
HEUR/QVM20.1.Malware.Gen
1.0.0.1120

Rising Antivirus
Malware.Undefined!8.C-7QcH9KTjvTG (Cloud)
23.00.65.16510

File size:
455.1 KB (465,984 bytes)

Product version:
2.0

Copyright:
© 2003-2016, Noël Danjou. All rights reserved.

Original file name:
WakeUpSetup.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\wakeupsetup.exe

Digital Signature
Signed by:

Authority:
DigiCert Inc

Valid from:
3/25/2014 2:00:00 AM

Valid to:
5/31/2017 3:00:00 PM

Subject:
CN=Noël Danjou, O=Noël Danjou, L=Saint Jean des Champs, S=Basse-Normandie, C=FR

Issuer:
CN=DigiCert SHA2 Assured ID Code Signing CA, OU=www.digicert.com, O=DigiCert Inc, C=US

Serial number:
012D4FB2654975ACADD838F3D21DD2DD

File PE Metadata
Compilation timestamp:
4/3/2016 11:18:56 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:Eg863/ErZ6XIW5m6j2loWp0/rvZHSfe47kTDY7VO4qjzeQ:Clo1dHSfyXY7c4

Entry address:
0x33B6

Entry point:
81, EC, D4, 02, 00, 00, 53, 56, 57, 6A, 20, 5F, 33, DB, 68, 01, 80, 00, 00, 89, 5C, 24, 14, C7, 44, 24, 10, 30, A2, 40, 00, 89, 5C, 24, 1C, FF, 15, B4, 80, 40, 00, FF, 15, B0, 80, 40, 00, 66, 3D, 06, 00, 74, 11, 53, E8, 67, 31, 00, 00, 3B, C3, 74, 07, 68, 00, 0C, 00, 00, FF, D0, BE, B8, 82, 40, 00, 56, E8, E1, 30, 00, 00, 56, FF, 15, 5C, 81, 40, 00, 8D, 74, 06, 01, 80, 3E, 00, 75, EA, 55, 6A, 09, E8, 39, 31, 00, 00, 6A, 07, E8, 32, 31, 00, 00, A3, 44, A2, 42, 00, FF, 15, 3C, 80, 40, 00, 53, FF, 15, A4, 82...
 
[+]

Entropy:
7.3876

Code size:
24.5 KB (25,088 bytes)

The file WakeUpSetup.exe has been seen being distributed by the following URL.

http://noeld.com/dl.asp?filename=WakeUpSetup.exe

Scan WakeUpSetup.exe - Powered by Reason Core Security