e6430a16.exe

Dell Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from 192.168.1.22 and multiple other hosts.
Publisher:
Dell Inc.  (signed and verified)

MD5:
929c914df6e17f0f18976fe5841e6261

SHA-1:
8e23c09e21fa3982fdf55a84b8070886f5525d14

SHA-256:
2ef54f951b0668ef32824a69ca4c7eae6922ad64c968553c295ea920a37e5770

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/20/2024 12:44:13 AM UTC  (today)

File size:
8.6 MB (9,025,160 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\e6430a16.exe

Digital Signature
Signed by:

Authority:
Dell Inc.

Valid from:
5/5/2014 2:11:55 PM

Valid to:
5/4/2016 2:11:55 PM

Subject:
CN=Dell Inc., OU=CIS, O=Dell Inc., L=Round Rock, S=Texas, C=US

Issuer:
CN=Dell Inc. Enterprise Issuing CA2, O=Dell Inc.

Serial number:
7296605A0002000007FB

File PE Metadata
Compilation timestamp:
4/30/2013 5:15:24 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:a8C4P9zk6wRK7HZS/IJqqEM0icasAv6NWdpgmh:a89VzbwuHZSUqq+i77oWwG

Entry address:
0x48760

Entry point:
E8, 5B, 51, 00, 00, E9, 89, FE, FF, FF, 6A, 10, 68, 00, A3, 45, 00, E8, 0A, 3C, 00, 00, 33, C0, 39, 45, 08, 0F, 95, C0, 85, C0, 75, 18, E8, 75, 2B, 00, 00, C7, 00, 16, 00, 00, 00, E8, D3, 3B, 00, 00, 83, C8, FF, E9, C5, 00, 00, 00, 33, C0, 8B, 7D, 0C, 85, FF, 0F, 95, C0, 85, C0, 74, DA, F6, 47, 0C, 40, 75, 5F, 57, E8, 01, 3A, 00, 00, 59, 83, F8, FF, 74, 1B, 83, F8, FE, 74, 16, 8B, D0, C1, FA, 05, 8B, C8, 83, E1, 1F, C1, E1, 06, 03, 0C, 95, C0, DF, 46, 00, EB, 05, B9, 60, 34, 46, 00, F6, 41, 24, 7F, 75, A2...
 
[+]

Entropy:
7.9916  (probably packed)

Code size:
127 KB (130,048 bytes)

The file e6430a16.exe has been seen being distributed by the following 4 URLs.

http://192.168.1.22/drivers/Computers/Dell/Latitude/.../E6430A16.exe