crazyremoteserverinstaller2.2.5.2.exe

The program is a setup application that uses the Nullsoft Scriptable Install System installer. The file has been seen being downloaded from www.crazyremote.com.
MD5:
5eea4ddf374cb916ee353996fdc1001d

SHA-1:
805eb24904433ec0020d1259918cbba701bcf2c8

SHA-256:
04183110f2232adfa07cbe438e401b04bcf6b4d2202bb2744afb305e5708c4f8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/4/2024 5:13:54 AM UTC  (today)

File size:
9.6 MB (10,065,344 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Scriptable Install System

Common path:
C:\users\{user}\downloads\crazyremoteserverinstaller2.2.5.2.exe

File PE Metadata
Compilation timestamp:
12/6/2009 6:50:52 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:x0FJMG/ZGbWVh/KenWC6C1bquzekhA7tXhnCUxhLpdkPr4bf2SaicX:KWG7qC1muzLcx1LPksbI1

Entry address:
0x30FA

Entry point:
60, 89, C6, 8D, 1D, 44, 83, 14, 56, 0F, AF, C9, EB, 04, 4D, 0F, BE, D1, C7, C2, EC, 9D, BB, 44, 88, C9, 35, F1, A8, C7, B1, 76, 01, 4B, 52, 22, D1, E8, 26, 00, 00, 00, F3, 2C, 6D, 18, CD, 39, EE, F2, 8D, 3D, 29, A9, 15, C5, 8D, 45, 00, EB, 03, F6, C1, 04, 71, 04, 88, F1, 84, F9, 33, D8, 69, CB, 65, C2, 6F, 92, 8A, E8, 88, EF, 0F, B6, EE, 69, DD, A9, 5D, 4B, 00, 69, FA, C3, 67, 13, A5, 4F, 8D, 05, 95, 98, 66, 7D, 3B, CE, 5D, EB, 08, F7, C0, 56, 6E, E4, F3, 04, 9A, 31, D8, 8A, E1, 4B, EB, 07, F6, C3, 32, C6...
 
[+]

Entropy:
7.9980  (probably packed)

Code size:
23.5 KB (24,064 bytes)

The file crazyremoteserverinstaller2.2.5.2.exe has been seen being distributed by the following URL.

Scan crazyremoteserverinstaller2.2.5.2.exe - Powered by Reason Core Security