keyturion35_[www.programosy.pl].exe

KeyTurion

Datpol

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from www.storage.programosy.pl and multiple other hosts.
Publisher:
Datpol

Product:
KeyTurion

Description:
KeyTurion Setup

MD5:
0be644babd3d4e66afa4d0290cfd0d36

SHA-1:
5b3d3ca7077fca1639b8c3988c0a0be70c2bb357

SHA-256:
ea3be9b702b1628cbb7cde9a12107176fb0a4decbb316b09c09341d4c86b8c8d

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
8/6/2025 3:07:37 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:PUP-gen [PUP]
2014.9-160201

Vba32 AntiVirus
suspected of Malware.Delf.5
3.12.26.4

File size:
2.3 MB (2,442,747 bytes)

Copyright:
Copyright © 2008 Datpol

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:5aMV+4dYBxoXnIAJf0ifRiPg0OD+6/4Bnvq1AQFObqW8pbvocXd8dTO9g4FY:QMRYcXBJ8eRilZ1Fi1sbT8loPI8

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, 53, C9, FF, FF, E8, 9A, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, E8, CD, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, E8, CD...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file keyturion35_[www.programosy.pl].exe has been seen being distributed by the following 6 URLs.

http://www.storage.programosy.pl/KeyTurion35_[www.programosy.pl].exe

http://s10605.chomikuj.pl/File.aspx?e=Npbz2NuBToa5pnDbWCmUWWjRS2eDuz1hjCX8U__9T8ZTgC22JFafbz7hNmZo9kdNf_DUyX8ETvStV_J2h0XvTFCIkZs7YJxeMwX_5WITGOLWPjtaZ8hbQxJIwWtM22783GZ5J4srnqqjiIMKos7NXA&pv=2

http://s10605.chomikuj.pl/File.aspx?e=Npbz2NuBToa5pnDbWCmUWWjRS2eDuz1hjCX8U__9T8YpJ-RSCKNvLnV1rFUOalcEy8QaLgRsrV2gcT5uCDz6Ll7W51z6C17A5uTZJAzdyNsOYIITOg8dxCegB1B0BxaT4ps3JIeyY806FkSQ4dbxew&pv=2

Scan keyturion35_[www.programosy.pl].exe - Powered by Reason Core Security