jxpinstali.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.sugarsync.com.
Version:
1.0.0.0

MD5:
b34d44e138f51f0eb780215695cfe4ef

SHA-1:
7e998a1b1b6e07d75b2b2263617e029c1474974c

SHA-256:
f00b60864c259e6bcf58a7ca7eacebaa4363f31bc33270019a8d175bb4ee1a90

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
10/23/2018 11:05:01 AM UTC  (today)

File size:
825 KB (844,800 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\jxpinstali.exe

File PE Metadata
Compilation timestamp:
8/4/2016 1:24:45 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:uZNXZtaBgBy6lItpAnm6gAA+u8uTJsneZDJ:kN7aYMtcITJseD

Entry address:
0x89AD8

Entry point:
55, 8B, EC, B9, 0D, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 51, B8, 80, 40, 48, 00, E8, AE, 05, F8, FF, 33, C0, 55, 68, 36, 9D, 48, 00, 64, FF, 30, 64, 89, 20, 8D, 55, EC, B8, 1A, 00, 00, 00, E8, CF, 9C, FF, FF, 8D, 45, EC, 50, 8D, 55, E8, B8, 50, 9D, 48, 00, E8, F2, 9D, FF, FF, 8B, 55, E8, 58, E8, F5, D7, F7, FF, 8B, 45, EC, B2, 01, E8, 67, 0F, F9, FF, 84, C0, 0F, 85, E2, 01, 00, 00, 8D, 55, E4, B8, 1A, 00, 00, 00, E8, 96, 9C, FF, FF, 8D, 45, E4, 50, 8D, 55, E0, B8, 50, 9D, 48, 00, E8, B9, 9D, FF, FF, 8B...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
545 KB (558,080 bytes)

The file jxpinstali.exe has been seen being distributed by the following URL.

Scan jxpinstali.exe - Powered by Reason Core Security