justinmind_prototyper_windows.exe

Justinmind Prototyper

JUSTINMIND

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from doc-10-24-docs.googleusercontent.com and multiple other hosts.
Publisher:
JUSTINMIND  (signed and verified)

Product:
Justinmind Prototyper

Version:
7.2.2

MD5:
28813506c9bee5a3644b6bc23dc9dbdc

SHA-1:
81ee36a3b762dbc2533a6d583d3fa13b00ebf95c

SHA-256:
d5a1a5cb5b0886b21f8a34545ffbeced0d97d0a8305a2aadffa55d8a43f93668

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 10:28:19 PM UTC  (today)

File size:
251 MB (263,150,456 bytes)

Product version:
7.2.2

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\justinmind_prototyper_windows.exe

Digital Signature
Signed by:

Authority:
AC Camerfirma S.A.

Valid from:
3/31/2016 3:26:43 AM

Valid to:
3/31/2019 3:26:43 AM

Subject:
C=ES, CN=JUSTINMIND, O=JUSTINMIND, OID.1.3.6.1.4.1.17326.30.2=CIF, SERIALNUMBER=B62961842, OU=DEVELOPMENT, L=BARCELONA, S=BARCELONA, Description=Code Signing Certificate: CODESIGN-1095-SW-KPSC

Issuer:
CN=Camerfirma Codesign II - 2014, L=Madrid (see current address at https://www.camerfirma.com/address), SERIALNUMBER=A82743287, O=AC Camerfirma S.A., OU=AC CAMERFIRMA, C=ES

Serial number:
54786A77E2FA09F5

File PE Metadata
Compilation timestamp:
1/13/2007 1:26:07 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6291456:KkPZuKhYC3yT54D6T/JIfBe8S76lAgBnFZ3:Kalt3BD6TBeS7IPBFh

Entry address:
0x3132

Entry point:
81, EC, 7C, 01, 00, 00, 53, 55, 56, 33, F6, 57, 89, 74, 24, 18, BD, 40, 92, 40, 00, C6, 44, 24, 10, 20, FF, 15, 30, 70, 40, 00, 56, FF, 15, 70, 72, 40, 00, A3, F0, 47, 42, 00, 56, 8D, 44, 24, 30, 68, 60, 01, 00, 00, 50, 56, 68, F8, FC, 41, 00, FF, 15, 58, 71, 40, 00, 68, 30, 92, 40, 00, 68, 40, 3F, 42, 00, E8, 28, 28, 00, 00, BB, 00, B4, 42, 00, 53, 68, 00, 04, 00, 00, FF, 15, B4, 70, 40, 00, E8, 64, FF, FF, FF, 85, C0, 75, 24, 68, FB, 03, 00, 00, 53, FF, 15, B0, 70, 40, 00, 68, 28, 92, 40, 00, 53, E8, 13...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
22.5 KB (23,040 bytes)

The file justinmind_prototyper_windows.exe has been seen being distributed by the following 2 URLs.

https://doc-10-24-docs.googleusercontent.com/docs/securesc/h3l5clg2rtpcmmidq46hu47n36b3vo6b/h17psotdmtg803fi1qrj7kkt97cjkg4k/1473228000000/.../14783903182314350201/0B2ZXP_yIRFx3LVVzd2pDYUQ1V2M?e=download

Scan justinmind_prototyper_windows.exe - Powered by Reason Core Security