install_artrage_4_windows.exe

ArtRage 4

Ambient Design Ltd

This is a self-extracting archive and installer. The file has been seen being downloaded from s7651.chomikuj.pl and multiple other hosts.
Publisher:
Ambient Design  (signed by Ambient Design Ltd)

Product:
ArtRage 4

Description:
This installer database contains the information required to install ArtRage 4.

Version:
4.5.2.0

MD5:
b87bec4e9a5091548fd004942cc99028

SHA-1:
eff1cd475bd9830e335298aaaa6f35e4755fd327

SHA-256:
6de6e1d5e13ae5ddd76a9f01c8e6119c383f518c2c1a490a2371d7d199e54e20

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 2:23:32 PM UTC  (today)

File size:
84.4 MB (88,488,944 bytes)

Product version:
4.5.2.0

Copyright:
Copyright (C) 2014 Ambient Design

Original file name:
install_artrage_4_windows.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\install_artrage_4_windows.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
10/18/2012 8:00:00 PM

Valid to:
11/11/2015 6:59:59 PM

Subject:
CN=Ambient Design Ltd, OU=ArtRage Development, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Ambient Design Ltd, L=Auckland, S=Auckland, C=NZ

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1CDC7D85DDFFC556C26A81D6642EB9C8

File PE Metadata
Compilation timestamp:
8/12/2014 9:30:15 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1572864:4wznAaIBL2I8td+U869EEl7id8kTtCytpUfyOcTDP2FpQOjO4U3yB:4wzAfAI8tJ+Elg8etdtjOMjspQOjj

Entry address:
0xC875C

Entry point:
E8, 47, CC, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 51, 53, 56, 8B, F0, 33, DB, 3B, F3, 75, 1E, E8, 5D, 4E, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, C5, D5, FF, FF, 83, C4, 14, 8B, C6, E9, C2, 00, 00, 00, 57, 39, 5D, 0C, 77, 1E, E8, 39, 4E, 00, 00, 6A, 16, 5E, 53, 53, 53, 53, 53, 89, 30, E8, A1, D5, FF, FF, 83, C4, 14, 8B, C6, E9, 9D, 00, 00, 00, 33, C0, 39, 5D, 14, 66, 89, 06, 0F, 95, C0, 40, 39, 45, 0C, 77, 09, E8, 0A, 4E, 00, 00, 6A, 22, EB, CF, 8B, 45, 10, 83, C0, FE, 83, F8, 22, 77...
 
[+]

Entropy:
7.9665  (probably packed)

Code size:
1021.5 KB (1,046,016 bytes)

The file install_artrage_4_windows.exe has been seen being distributed by the following 6 URLs.

http://s7651.chomikuj.pl/File.aspx?e=flzcG0qwYVnDg6XXvl3-jYQjeVsU01S7oem0wOLTS8Wrbm9o7I4hrDh_vBgtHG-ajM6RNwwD97bYcemzAUC8cQ8zHgvI2q0z55s0uxbh4N8NNjUc-7Z2KcpSZgG8cDMohOjKLJ4hEVsU7DVNQHpOaQ&pv=2

http://s7651.chomikuj.pl/File.aspx?e=flzcG0qwYVnDg6XXvl3-jYQjeVsU01S7oem0wOLTS8XXtlyPuF2fGRg23j7EiS-JOSUkJQtwAUTS93dsXmoTdqZA2nSNPJ5bwa1wxAmDaYzgOHOKS9p9r7TSTppkfmUhCIlYA2v7OkSZJPpYMjKGIA&pv=2

http://s7651.chomikuj.pl/File.aspx?e=flzcG0qwYVnDg6XXvl3-jYQjeVsU01S7oem0wOLTS8VGa42egQbRg7r_esXtX9idQ2EnahL5yZI1UDiXLCQRkle3tamAsjxFKsB7Jg_4bwQpz2h8SqQdNIi7-PIiRlafw0UIoj-QUJSh45H4k6hKhw&pv=2

Scan install_artrage_4_windows.exe - Powered by Reason Core Security