ytd-setup.exe

freewareupdate.com

This is a self-extracting archive and installer. The file has been seen being downloaded from javadl.oracle.com and multiple other hosts.
Product:
freewareupdate.com

Description:
FreewareUpdate

Version:
1.0.0.0

MD5:
d4d381007ac572ab3e00d8ee1d5a71b3

SHA-1:
38f2c570bd038a513c1411a13740e4862f965e20

SHA-256:
a2552dfae3ba148409e939fc876a4e9e826ca429cb173a4112e6555769ee178d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 8:11:15 AM UTC  (today)

File size:
91.5 KB (93,696 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2016 freewareupdate.com

Original file name:
CapNhat.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ytd-setup.exe

File PE Metadata
Compilation timestamp:
4/20/2016 4:07:08 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:mb1aDCEn98/WWJ0oPaIJVgDp6O6SqwyB5aFXCpnh6SWbyNkMn:mKCE95i0Cv6ELxBIZwj+yNkI

Entry address:
0x15D16

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
79.5 KB (81,408 bytes)

The file ytd-setup.exe has been seen being distributed by the following 2 URLs.

http://javadl.oracle.com/webapps/.../AutoDL?BundleId=116038

Scan ytd-setup.exe - Powered by Reason Core Security