evsetup.exe

This is a setup and installation application. The file has been seen being downloaded from www.desksoft.com.
MD5:
fbf5c585d06a8ba9057a53849151f53e

SHA-1:
46463d0a4fa32c22f19bb79f77ea379e0916dcfa

SHA-256:
cbba3d87efebf77996f2257a3e696ffac8dee3dd8fb4ea233424ffc6649a1cb4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 1:50:32 AM UTC  (today)

File size:
18.4 MB (19,299,640 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\evsetup.exe

File PE Metadata
Compilation timestamp:
4/28/2011 1:38:20 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
393216:zy7ZaVWoxIhS5vqo/NoFw6IeSuYxTCPB0AcorTzTYbFdHUHa/upHAOVdeXAC8LGk:u7ZxhW5FoFoWYxTCJ3YbFd0Ha/+g84ab

Entry address:
0x1FFB0

Entry point:
F7, C7, 04, 32, B0, 04, 29, FD, 0F, AF, D9, 09, F5, 8D, 1D, 9A, 94, 82, 16, C7, C0, 56, 0D, 31, 5D, F7, C0, 27, C5, 18, B5, 81, C8, D9, 4B, 8A, F5, 88, FD, 81, E8, 64, 68, B7, 17, 86, CB, 0F, AF, FB, 0F, B7, D6, FF, C0, 0F, BF, C2, C6, C0, 6C, 8D, 1E, F6, C0, 84, 4A, 81, F0, C9, 79, B0, B1, 53, 80, F4, EB, 8D, 35, 22, A7, 66, D1, 59, 85, FE, 8A, F3, 88, CC, 87, F2, 0F, BF, D8, 81, CE, 1E, 26, 22, E6, 2B, E9, F2, 85, C3, BA, 46, 56, 79, 0C, C6, C6, 19, F2, 68, 21, D9, 4E, 00, 84, F4, 87, F1, 81, FF, B8, 46...
 
[+]

Entropy:
8.0000  (probably packed)

Code size:
48 KB (49,152 bytes)

The file evsetup.exe has been seen being distributed by the following URL.

Scan evsetup.exe - Powered by Reason Core Security