grand-fantasia-es-en-win.exe

Downloader

Aeria Games and Entertainment

Publisher:
Aeria Games & Entertainment  (signed by Aeria Games and Entertainment)

Product:
Downloader

Version:
2,1,0,0

MD5:
9d135dd3a42cfac161b37e9c1ff55ca3

SHA-1:
801952fadecf11023bc6afe00b9c98ee53681035

SHA-256:
10c85c104cb19f10d5bfb7a01950b9a1cf90824f5b58aa353367b16c047ac314

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 9:20:02 AM UTC  (today)

File size:
484.1 KB (495,672 bytes)

Product version:
2,1,1003,0

Copyright:
© 2012 Aeria Games & Entertainment, Inc.

Original file name:
Downloader.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\grand-fantasia-es-en-win.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
1/25/2012 7:00:00 AM

Valid to:
1/25/2014 6:59:59 AM

Subject:
CN=Aeria Games and Entertainment, O=Aeria Games and Entertainment, L=Santa Clara, S=California, C=US

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
1A25B9207D56560561E712462DE87F87

File PE Metadata
Compilation timestamp:
3/27/2012 12:37:13 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:Nf5RGV7258J7TcnVVd+A/c9ZcG6TWEjj1UH8dkIa74g:NLGZ258NcnUA/c3cFTWoj1UhB

Entry address:
0x208D1

Entry point:
E8, A0, 71, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 83, EC, 10, 83, 65, FC, 00, 56, 8B, 75, 08, 85, F6, 75, 16, E8, 50, 11, 00, 00, 6A, 16, 5E, 89, 30, E8, 90, 45, 00, 00, 8B, C6, E9, 0C, 02, 00, 00, 6A, 24, 68, FF, 00, 00, 00, 56, E8, 2E, E8, FF, FF, 8B, 45, 0C, 83, C4, 0C, 85, C0, 74, D3, 8B, 08, 8B, 40, 04, 89, 4D, F0, 89, 45, F4, 83, F8, FF, 7F, 16, 7C, 08, 81, F9, 40, 57, FF, FF, 73, 0C, E8, 09, 11, 00, 00, 6A, 16, 5E, 89, 30, EB, BC, 83, F8, 07, 7C, 0A, 7F, ED, 81, F9, CF, 26, 41, 93, 77, E5...
 
[+]

Entropy:
7.0878

Code size:
193.5 KB (198,144 bytes)

The file grand-fantasia-es-en-win.exe has been seen being distributed by the following 6 URLs.

https://dw.uptodown.com/dwn/GkUqAipSdG14j-6ltENrEeSjvwv93ULcfEHpgipG7WWK5ugAW9W6-9ssEHGnWM6BwEn_sM4-3GutsPmtpG2CYGzX-rLhrXwrs9gCWYPOak-k3959EOanuo2DfoAn_DSU/mEz_MoRcLEljjXoNz2lm_IqEGgIq_jd0fNxIWZC-mQpNT_Q2tNlWuNvi5ywN05b4xOwMdj5p2biKnTDNTBv9cNigEH5Bkj877pO8SmPM-9cXdl_f6KK4VaENLwDGXELh/Hx78dn2iHmKpT4-PbggGzO5DzOqRPW9v4ewvTEj1IYQfP1O8VXmUbMqVj8fSc2Wy3-cYTucBthyfTlskoa9KTrsPyftSvtiIv306WBhfax5zOye9nhJ2V-DVTizmgpRu/.../

https://dw.uptodown.com/dwn/UIFl4WfONDm8t-43TAjOneiZlwGo42oh_OtF8L6Um-TnauOnZ_GYUcqlW9c7wzwHAo2eTbetsrDyK7TAJ5dLced_NDwvv97N0O-Afq704vJciwHF10jwPzWTO6JzEabb/YuozP73FQItR8jK3FCVbsSjdiEd5hjGaT8Qvt1GAWQ6MBDxFvJUc4wobKXJinHCUe_Hjh9Vf8WkjpvxOlbODv52gwluQqlVPFVbpHrBqs2Lb_6dL7tdyr5_s4S_mErSX/rWwzoQOFNf0ceufPOh96Dcvip-_eTIhFL770x08HT9TrD3TvhIpbl6CpGWPxrs5JJ-kuNFbucKysjQLhvE3IHbAMbGt_C_nruX-OsjAKb5JkA9d5S3vQkB1romUx257d/.../

https://dw.uptodown.com/dwn/is4oNiUGGo9u1sn7KRgpQYj5LPCkPN2qjGC83d_II0sNK2szyTWAv6ORz6VqPkSbwxe9trJP6zXEddEl8Qj6v8lPnS37XRScZVgE6DJXIsdhM5wlx-tGWwse0LxvIc2x/NMhziaBNxliSHUR3HHi4Xve5m6oukhrPMh-JfX7eCVnguF2Lap2GJG99NVW9nUZrBpZXVgKBEcZjR65wDwAbJOHiSx3HcdiD-0dTCwydFZaBwEIzXsOf-Ipu8wrkXnj0/HdOqNcvAtLEEhgs3MkReQ8J-LyafSv9dk1SXLj67iz8E-t8nMY8zVfMxjyORjo_TZIRbsfJWV4SQ6DCBabfPC1CWw_Beb8oczN-YSEjs6C9_8_XcUY0YTdEg8sQaqH57/.../

http://dw.uptodown.com/dwn/ui8rn3PM-guVHujxF0fifI1BQoy790bT_th6z7O8dKbsuJIdc2jYxJlwB3SOW4nW9EMzpxA5B8kWqY7uL2YwnKVOygToHvASAphuDb_NYwwVD-61-rJcU10c43khxtnq/shWwBofDe5l4_YNSt_UZ6QdCFeCYFkJCe0igzECcd5ZJs5pfpu7cDmtFNsjtyMIXdBUalbwVB-83yVusdolQFI6FO9URAmqBG6ZaCYsXYqK4J8u2MqmSSxPopXRZBTmH/.../

Scan grand-fantasia-es-en-win.exe - Powered by Reason Core Security