winscope.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from mdiy.pl.
MD5:
37a2894813a8012b512cbfd92d4e5703

SHA-1:
956f20bb545f4ed40da193862efa566452b3424d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 2:58:55 AM UTC  (today)

File size:
92 KB (94,208 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\documents and settings\aga\pulpit\winscope.exe

File PE Metadata
Compilation timestamp:
6/24/2055 1:14:50 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
1536:5OQRrlEMkYmyNXSV4+pXaWfgePcFLu5vHWGwv5v/Dy8GTsL3:fRZRiq+daWoePcFgHkt/2Vw

Entry address:
0x1000

Entry point:
A1, 5A, 10, 41, 00, C1, E0, 02, A3, 5E, 10, 41, 00, 57, 51, 33, C0, BF, A4, 34, 41, 00, B9, A0, 9B, 41, 00, 3B, CF, 76, 05, 2B, CF, FC, F3, AA, 59, 5F, 64, 67, 8B, 16, 04, 00, 89, 15, 6E, 10, 41, 00, 8B, 42, F8, A3, 66, 10, 41, 00, 8B, 42, FC, A3, 6A, 10, 41, 00, 83, EA, 04, 89, 15, 04, 99, 41, 00, 83, EA, 04, 3B, D4, 73, 02, 8B, E2, 6A, 00, E8, D3, A2, 00, 00, 59, 68, 2C, 10, 41, 00, 6A, 00, E8, EE, F0, 00, 00, A3, 62, 10, 41, 00, 6A, 00, E9, 60, EE, 00, 00, E9, 97, A3, 00, 00, 00, 00, 00, 55, 8B, EC, 83...
 
[+]

Code size:
61.5 KB (62,976 bytes)

The file winscope.exe has been seen being distributed by the following URL.

Scan winscope.exe - Powered by Reason Core Security