faktury_7_setup(dobreprogramy.pl).exe

Faktury Express 7

Polpress

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from s7143.chomikuj.pl and multiple other hosts.
Publisher:
Polpress

Product:
Faktury Express 7

Description:
Faktury Express 7 Setup

MD5:
c92f681c3a523e7a98a40f769497fe83

SHA-1:
9c59ad49a0738c49d1253f24d1babfb270df67b9

SHA-256:
2f5c8f4f21c445013a9a2fa698308b0b59193c63b46d54d2840cabe4cc6725ea

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
5/5/2024 8:05:08 AM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
TROJ_GEN.F47V0202
7.2.293

File size:
13.5 MB (14,140,528 bytes)

Copyright:
Copyright © 2013 Polpress

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\downloads\faktury_7_setup(dobreprogramy.pl).exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:Gs1V77A7knoa6pP5E7i/wZkfJikpSHywrn:V77A7W3Li//f4kpSt7

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, 53, C9, FF, FF, E8, 9A, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, 24, CE, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, 24, CE...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file faktury_7_setup(dobreprogramy.pl).exe has been seen being distributed by the following 17 URLs.

http://s7143.chomikuj.pl/File.aspx?e=9Suo2f6WVz2SYD2Papp8al-uRP0gTWZZUjofzgarOEKiBlfXg1NYPK04sa1UVQa2z1eP7mqFsr2n-hM6on-bucZ-UcbuNrt0pNgpZ-QHOPHdlcn5qTAq5f_j2KDblRUHh-Um_mqHkbsV-bkHJNuJb42ykp1HFobLJUUZIVVLjUaAvkzCcz0r_YFp3js98Sds4CF_TWvZ8ZbcvH7ep_6f7w&pv=2

http://s7143.chomikuj.pl/File.aspx?e=9Suo2f6WVz2SYD2Papp8al-uRP0gTWZZUjofzgarOEImsRQmGMa6Wyhfjzss-VnhVjkMPPGKNpPa27POzms0g5YRUSmKKeuFBpJHNTlzSW-DQOutmuzIQsLRy7fD2KJgpKN3INf-rsPD5hNQxakwpc5wq3MQcdoqa0lR5C1-fRupBwWcyDSp71UHKRhstAlR1vFcDsmwrEq0xsUgZVqQjQ&pv=2

http://s7143.chomikuj.pl/File.aspx?e=9Suo2f6WVz2SYD2Papp8al-uRP0gTWZZUjofzgarOELBN-kcnwfBaTN30f8BXEhcFhXR4EVQ6T2-aQ7PWxVsUmQNUo2QHQP4eEA10-XvAg6ocAv6tduQLtSua_J_4JwhtGCCxlZkCLCj_jy_jiWEOhJDCF0nuuE4oxMi-kPiaAQ3IBlnnA9qsHlE0S_5N7rLJgd_xFy_Ie3EhNU1hO5z8Q&pv=2

http://s6191.chomikuj.pl/File.aspx?e=9Suo2f6WVz2SYD2Papp8al-uRP0gTWZZUjofzgarOEJCWNQFfq_hUjEC4SRJl4z-jKHwn5oa9r75Ql_Gdn2J1ZZkYT-_vEqi3InK8f7HCDYJbZ7V6Y9-cSGoYfhPuTR6PYol58Cz46TZRsbw-HZwKbxBdxOye2tEP-UzPOd016q3ahjhjjbsEPrCMzmTa5ftm3fuxES5nxdlWObFZglEHdfdoingt7VB2CaFuXaPSxM&pv=2

http://s7143.chomikuj.pl/File.aspx?e=9Suo2f6WVz2SYD2Papp8al-uRP0gTWZZUjofzgarOEKpTg3F-RI13KVZEj1_jsa1u5UmArtO98Q7xxK2ps_bptFrs5E7dg9RW2L8P0u2rc1z7TddReTRJ9cV8gUQr4pVjEA7osAXIdVUy7_IREl0lA3EPT-58dXvNa2mjNL9vLd2_7a9pomLiW1Kl9Nd1a37HEz25xdjH6ZemQyU_oc_BQ&pv=2

http://s6191.chomikuj.pl/File.aspx?e=9Suo2f6WVz2SYD2Papp8al-uRP0gTWZZUjofzgarOELB_vHP9GlQBBKr9jBOP0h4PC9MwaxmSPhqGlee6ia5mkqZiRk9vk_CMS1x1mzKYb0BOjt8ntipf3a2e-Ju4MAz1s5lD4rB1MprkgNKRDfBy0zP_QrevPJjFEsVz75d_cf5RFFllFUkgOGfnPSQ-crpeb5OujMvVplIn4_ZIdn1NQ&pv=2

http://s6191.chomikuj.pl/File.aspx?e=9Suo2f6WVz2SYD2Papp8al-uRP0gTWZZUjofzgarOEKYxVtRAWcm2U-QQlstuGquqf6TY72D8xyRK4tPTRDLGNZlkcLRtrnwi-qDn5dkwMGSlSs_6utz3qguBrKlVbo7QdXdxSIjo2iOwwVHt2igFrv0zaBtG9MidIM3yel6Nixtxxx38miaQf1HvHJohQp5ydjpjY6CV5FzGcMdsfzIaphpnXgwgjOBsAdfGWrW7xw&pv=2

Scan faktury_7_setup(dobreprogramy.pl).exe - Powered by Reason Core Security