magic bullet photolooks 1.0 32bit.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from download1077.mediafire.com and multiple other hosts.
MD5:
9800db7128dc4588d0bb2ab1131262c9

SHA-1:
db8d2ed829c54a78a61845582a0ab3629f9b109e

SHA-256:
bfe0372fa447e41f5bbf0ec7710ae142442ea1c9622a5287ba7b2726bd2f1abb

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
5/8/2024 12:25:53 AM UTC  (today)

Scan engine
Detection
Engine version

Rising Antivirus
PE:Trojan.Win32.Generic.12522AD8!307374808
23.00.65.14729

File size:
6.2 MB (6,521,276 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\adobe\adobe photoshop cs5 (64 bit)\plug-ins\magic bullet photolooks\magic bullet photolooks 1.0 32bit.exe

File PE Metadata
Compilation timestamp:
3/10/2003 12:22:47 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:MraKJsnCyPclnBlIdOUQqsxJ7zOaxANmGVYEB9V:9Cj7IdOUQq8JfamGVYETV

Entry address:
0x646B

Entry point:
55, 8B, EC, 6A, FF, 68, 88, D1, 40, 00, 68, F0, 85, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, C0, D0, 40, 00, 33, D2, 8A, D4, 89, 15, 20, F2, 40, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 1C, F2, 40, 00, C1, E1, 08, 03, CA, 89, 0D, 18, F2, 40, 00, C1, E8, 10, A3, 14, F2, 40, 00, 33, F6, 56, E8, F2, 1F, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 32, 1E, 00, 00, FF, 15, BC, D0, 40, 00, A3, A8, F9, 40, 00, E8...
 
[+]

Entropy:
7.9931

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
48 KB (49,152 bytes)

The file magic bullet photolooks 1.0 32bit.exe has been seen being distributed by the following 21 URLs.

http://download1077.mediafire.com/h3k52ueb2gag/.../Magic Bullet PhotoLooks 1.0 32bit.exe

http://download1859.mediafire.com/eo8zwmq70img/.../Magic Bullet PhotoLooks 1.0 32bit.exe

http://download890.mediafire.com/bcve1irgnjwg/.../Magic Bullet PhotoLooks 1.0 32bit.exe

http://download890.mediafire.com/vnk21xnhsbeg/.../Magic Bullet PhotoLooks 1.0 32bit.exe

http://download1756.mediafire.com/dikjs2j2c1hg/.../Magic Bullet PhotoLooks 1.0 32bit.exe

http://download6.mediafire.com/r7i3i6hpy5xg/.../Magic Bullet PhotoLooks 1.0 32bit.exe

http://download1756.mediafire.com/7p2avpc7puvg/.../Magic Bullet PhotoLooks 1.0 32bit.exe

http://download969.mediafire.com/8r1dv5b09plg/.../Magic Bullet PhotoLooks 1.0 32bit.exe

http://download6.mediafire.com/5dfimzoi4cig/.../Magic Bullet PhotoLooks 1.0 32bit.exe

Scan magic bullet photolooks 1.0 32bit.exe - Powered by Reason Core Security