jbidwatcher-2.5.3pre3-installer.exe

JBidwatcher 2.5.3pre3

CyberFOX Software, Inc

This is a setup and installation application. The file has been seen being downloaded from www.jbidwatcher.com.
Publisher:
CyberFOX Software, Inc

Product:
JBidwatcher 2.5.3pre3

Version:
2.5.3pre3

MD5:
710722eb00f317972fa1d5698307d3e5

SHA-1:
01d404cfafa45ca6b3747344e09487775d2d8b45

SHA-256:
18b40eeeb9a030edf571eb7f6b65fe756a62099e2b3acc33e276b74124325469

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/26/2024 5:54:00 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Paked
1.3.0.4959

ViRobot
JS.A.Pakes.5074488
2011.4.7.4223

File size:
4.8 MB (5,074,488 bytes)

Product version:
2.5.3pre3

Original file name:
C:\Users\mrs\Documents\JBidwatcher\JBidwatcher-2.5.3pre3-Installer.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\jbidwatcher-2.5.3pre3-installer.exe

File PE Metadata
Compilation timestamp:
9/5/2011 5:15:02 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:Qz6dkStCtMYxDkUrSIS8fN4oCgrglF3TjZtWEQfF27J5FxqfHzNXkZZycon:4AQyYxAWS2lCg0ltQs+fTWofn

Entry address:
0x1814

Entry point:
55, 8B, EC, 83, E4, F8, 83, EC, 2C, 53, 56, 57, FF, 15, 00, 20, 40, 00, E8, 6B, FF, FF, FF, 85, C0, 74, 07, 6A, 02, E8, 50, F9, FF, FF, 33, FF, 47, 39, 3D, 0C, 44, 54, 00, 8B, F7, 7E, 53, 8B, 1D, 10, 20, 40, 00, A1, 10, 44, 54, 00, 8B, 04, B0, 8A, 08, 80, F9, 2F, 74, 05, 80, F9, 2D, 75, 30, 68, 6C, 21, 40, 00, 40, 50, FF, D3, 85, C0, 75, 08, 89, 3D, 08, 44, 54, 00, EB, 1B, A1, 10, 44, 54, 00, 8B, 04, B0, 68, 74, 21, 40, 00, 40, 50, FF, D3, 85, C0, 75, 06, 21, 05, 08, 44, 54, 00, 46, 3B, 35, 0C, 44, 54, 00...
 
[+]

Entropy:
7.9989

Developed / compiled with:
Microsoft Visual C++

Code size:
4 KB (4,096 bytes)

The file jbidwatcher-2.5.3pre3-installer.exe has been seen being distributed by the following URL.

Scan jbidwatcher-2.5.3pre3-installer.exe - Powered by Reason Core Security