Win7BootUpdater.exe

Win7BootUpdater

Coder for Life

Publisher:
Coder for Life

Product:
Win7BootUpdater

Description:
Boot Updater for Windows 7

Version:
0.0.1.1

MD5:
f8ef407760495b4d93daff3fb99dbdd3

SHA-1:
c83b56e418eae2ecce1dd713ebc3dc62529afece

SHA-256:
b203181b5fbf36d1978b15cf27fc33550585042422c3f7deb1b3390d8494fb99

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/23/2024 10:04:49 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.CDB
1.3.0.4959

File size:
643.5 KB (658,944 bytes)

Product version:
0.0.1.1

Copyright:
Copyright (c) jeff@coderforlife.com 2011

Original file name:
Win7BootUpdater.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\temp\tempmrt\win7bootupdater.exe

File PE Metadata
Compilation timestamp:
5/4/2011 2:26:20 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:LDunGBmeTOIZO4YkYT5+W6z0I+/kn7U6AhvhyJ92:LKnGlTOP4YkYT5De+/U77khyJ9

Entry address:
0x254CC

Entry point:
FF, 25, 60, 62, 42, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8D, 4D, D8, E9, 38, 31, FE, FF, 8D, 4D, D0, E9, 30, 31, FE, FF, 8D, 4D, E8, E9, 28, 31, FE, FF, 8D, 4D, E0, E9, 20, 31, FE, FF, 8B, 54, 24, 08, 8D, 42, BC, 8B, 4A, B8, 33, C8, E8, 13, 6D, FF, FF, B8, C0, BB, 49, 00, E9, 03, 6D, FF, FF, CC, CC, CC, CC, CC, 8D, 4D, E8, E9, F8, 30, FE, FF, 8D, 4D, E0, E9, F0, 30, FE, FF, 8D, 4D, D8, E9, E8, 30, FE, FF, 8B, 54, 24, 08, 8D, 42, C4, 8B, 4A, C0, 33, C8, E8, DB, 6C, FF, FF, B8, FC, BB...
 
[+]

Entropy:
7.4746

Code size:
147.5 KB (151,040 bytes)

The file Win7BootUpdater.exe has been seen being distributed by the following 24 URLs.

http://gsf-cf.softonic.com/c83/b56/.../file?SD_used=0&channel=WEB&fdh=no&id_file=322559&instance=softonic_fr&type=PROGRAM&Expires=1487228509&Signature=L6ZUPA6aEF3Oe8oj0TLqboSBJ0BteXyLy0dcjavo4wlWGwfB-k4pAWm4J9oisL3Ste9erNt4-k7TbXVrsxi1Rkd7VR17n9ORZaeOXSX4Cyj9Tj3ofr-qya4WZHpFSXw6r4vAQjZePeuBjK~cYVCHR5hmJOf3xyRtxHMN-CjmDgE_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=Win7BootUpdater.exe

https://app.box.com/index.php?rm=box_download_shared_file&shared_name=8c912ac108e17e3be321&file_id=f_2852961967

http://gsf-cf.softonic.com/c83/b56/.../file?SD_used=0&channel=WEB&fdh=no&id_file=322559&instance=softonic_fr&type=PROGRAM&Expires=1482214104&Signature=Ss05EPY5-b8NjJ~IYvmFGj1aOM0vr225sp4sFce9p8wvRK4lP0-rrPNbSsZ1Cnt0hOWMb0aeNz1C0qGTkyXidZxhV63Ck3hU~w5JmOC99p7vXrV8SQMSa7NhkUM7ehGKCFsoSsOU6CSTDShdxF5mjA-ME~l0-dAq2I5Gaome~IU_&Key-Pair-Id=APKAJUA62FNWTI37JTGQ&filename=Win7BootUpdater.exe

http://download1132.mediafire.com/t0l88bdnq6cg/.../Win7BootUpdater.exe

Scan Win7BootUpdater.exe - Powered by Reason Core Security