insteql2015.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.d-plus.fr.
MD5:
ef3b87eb9e37b6a0925c8246bee5c782

SHA-1:
07f236969de96869e19c738a561428d545d06f9f

SHA-256:
8d9fca0e4ccb6f0400f462d4ece3f2b91be6bc5d3f13bf66f2a6b86f461c549d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/20/2024 12:10:16 AM UTC  (today)

File size:
15.4 MB (16,180,723 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\insteql2015.exe

File PE Metadata
Compilation timestamp:
11/10/2015 6:23:59 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
393216:RUSbYImcKTnpaIqrNLEZIJZSpSWWrITpFW3YZNCVA5XQQ:qnIqjpaHrhSoXrITp/uAlQQ

Entry address:
0x10000

Entry point:
A1, 59, 00, 42, 00, C1, E0, 02, A3, 5D, 00, 42, 00, 57, 51, 33, C0, BF, 30, 11, 42, 00, B9, 18, 2F, 42, 00, 3B, CF, 76, 05, 2B, CF, FC, F3, AA, 59, 5F, 64, 67, 8B, 16, 04, 00, 8B, 42, F8, A3, 61, 00, 42, 00, 8B, 42, FC, A3, 65, 00, 42, 00, 83, EA, 04, 89, 15, 90, 00, 42, 00, 83, EA, 04, 3B, D4, 73, 02, 8B, E2, 6A, 00, E8, 52, 0C, 00, 00, 59, 68, 2C, 00, 42, 00, 6A, 00, E8, 89, BA, 00, 00, A3, 6A, 00, 42, 00, 6A, 00, E9, BE, B7, 00, 00, E9, 35, 0C, 00, 00, 00, 55, 8B, EC, 83, C4, EC, 53, 56, 57, 8B, 7D, 10...
 
[+]

Code size:
48 KB (49,152 bytes)

The file insteql2015.exe has been seen being distributed by the following URL.

Scan insteql2015.exe - Powered by Reason Core Security