csv10b4838.exe

Fortres Grand Installer

Fortres Grand Corporation

This is a setup and installation application. The file has been seen being downloaded from cdn.fortresgrand.com.
Publisher:
Fortres Grand Corporation  (signed and verified)

Product:
Fortres Grand Installer

Description:
Fortres Grand Setup Launcher

Version:
1, 0, 0, 1

MD5:
65e1cbb93bd5601704645d58d69c2f38

SHA-1:
ef4e37b0dd4eb3684a5f776c24e64e7354a4416a

SHA-256:
8bc7cabc80eac50646800d491ae493a95317384d953034d74296d1dde36395d7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/4/2024 12:20:33 PM UTC  (today)

File size:
22.9 MB (24,063,152 bytes)

Product version:
1, 0, 0, 1

Copyright:
Copyright © 2007 Fortres Grand Corporation

Original file name:
MSIStub.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\csv10b4838.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
3/22/2016 1:43:16 PM

Valid to:
4/22/2018 1:43:16 PM

Subject:
E=trust@fortresgrand.com, CN=Fortres Grand Corporation, O=Fortres Grand Corporation, L=Plymouth, S=IN, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112116A5356CFD8A5F551941993462DF4B27

File PE Metadata
Compilation timestamp:
3/10/2016 8:54:08 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

Entry address:
0x8335

Entry point:
E8, 54, 05, 00, 00, E9, 80, FE, FF, FF, 55, 8B, EC, 6A, 00, FF, 15, 98, B1, 41, 00, FF, 75, 08, FF, 15, 94, B1, 41, 00, 68, 09, 04, 00, C0, FF, 15, 2C, B1, 41, 00, 50, FF, 15, 9C, B1, 41, 00, 5D, C3, 55, 8B, EC, 81, EC, 24, 03, 00, 00, 6A, 17, E8, E3, 15, 01, 00, 85, C0, 74, 05, 6A, 02, 59, CD, 29, A3, E0, 5C, 42, 00, 89, 0D, DC, 5C, 42, 00, 89, 15, D8, 5C, 42, 00, 89, 1D, D4, 5C, 42, 00, 89, 35, D0, 5C, 42, 00, 89, 3D, CC, 5C, 42, 00, 66, 8C, 15, F8, 5C, 42, 00, 66, 8C, 0D, EC, 5C, 42, 00, 66, 8C, 1D, C8...
 
[+]

Entropy:
7.6867

Code size:
103 KB (105,472 bytes)

The file csv10b4838.exe has been seen being distributed by the following URL.

http://cdn.fortresgrand.com/.../csv10b4838.exe

Scan csv10b4838.exe - Powered by Reason Core Security