360 flash tool.exe

360 Flash Dump Tool

Scene Release

This is a setup program which is used to install the application. The file has been seen being downloaded from bit.ly and multiple other hosts.
Publisher:
Scene Release

Product:
360 Flash Dump Tool

Version:
0, 97, 0, 0

MD5:
74268310f421c68ece35f2d4a9387377

SHA-1:
48e8454e75c93cbcda51791c00e28a8268017cc8

SHA-256:
400b29eb31e0741feb63792705346ba9d3f60d48cdb7b664a978b14e2b32401e

Scanner detections:
4 / 68

Status:
Clean  (4 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/19/2024 12:43:33 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.CDB
1.3.0.4959

Quick Heal
(Suspicious) - DNAScan
5.14.14.00

Trend Micro House Call
PAK_Generic.006
7.2.133

Trend Micro
PAK_Generic.006
10.465.13

File size:
461.8 KB (472,848 bytes)

Product version:
0, 97, 0, 0

Copyright:
Copyright (C) 2010

Original file name:
360 Flash Dump Tool.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
10/3/2010 9:35:22 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:SYO1O0MYVm2PCZUGvdQeGOnLUl6N8x9foeo/U5AEmBLh:XOI5YhCxvdQ9OLU86x9foV/UID

Entry address:
0xE6046

Entry point:
B8, 00, 60, 4E, 00, 68, 00, 46, 4A, 00, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 66, 9C, 60, 50, 8B, D8, 03, 00, 68, 48, 36, 03, 00, 6A, 00, FF, 50, 1C, 89, 43, 08, 68, 00, 00, 40, 00, 8B, 3C, 24, 8B, 33, 66, 81, C7, 80, 07, 8D, 74, 1E, 08, 89, 3B, 53, 8B, 5E, 10, B8, 80, 08, 00, 00, 56, 6A, 02, 50, 57, 6A, 24, 6A, 0A, 56, 6A, 04, 50, 57, FF, D3, 83, EE, 08, 59, F3, A5, 59, 66, 83, C7, 58, 81, C6, 40, 01, 00, 00, F3, A5, FF, D3, 58, 8D, 90, A0, 01, 00, 00, 8B, 0A, 83, C2, 14, 8B, 5A, F0, 85...
 
[+]

Packer / compiler:
PEtite v2.2

Code size:
673.3 KB (689,408 bytes)

The file 360 flash tool.exe has been seen being distributed by the following 2 URLs.

Scan 360 flash tool.exe - Powered by Reason Core Security