xtools.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.bipom.com.
MD5:
10a906a72a3194754b82f8377d0ba2c5

SHA-1:
c3a54211b8da90e088ea50e8600308fe5022f8b5

SHA-256:
94224d22727d46acfdea57b455686f2481b1f3291b1a01058ee750e75700a9a7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 5:09:30 AM UTC  (today)

File size:
1023.3 KB (1,047,808 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\xtools.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
24576:UpT9yIDIvWk2Se4rcdwrwtRXluJUSSMVkvP5zH:VIcvqSegcd3zEuOV05zH

Entry point:
4D, 5A, 5B, 00, 1A, 00, 00, 00, 02, 00, 22, 0D, FF, FF, 49, 05, 80, 00, 00, 00, 0E, 00, 0E, 03, 1C, 00, 00, 00, E5, 3A, 0B, 28, FF, FF, BB, 00, 10, B4, 4A, CD, 21, 33, C0, 8B, E0, BF, 68, 63, B9, FF, 1F, A7, C7, 2B, CF, F3, AA, BE, 81, 00, BF, 98, 63, BB, 72, FE, FF, F0, 01, 00, 8A, 04, 3C, 0D, 74, 1D, 46, 3C, 20, 74, F5, 89, 7F, 8E, 3F, 83, C3, 02, 41, 88, 05, 47, EC, 08, FF, FF, EC, 75, F2, 47, EB, DE, 47, 89, 0E, 6E, 63, 8C, 06, 6A, 63, A1, FF, C3, 2C, 00, A3, 6C, 63, 8E, C0, BE, 00, 00, 26, DD, 46, FF...
 
[+]

The file xtools.exe has been seen being distributed by the following URL.

Scan xtools.exe - Powered by Reason Core Security