Microsoft Toolkit.exe

Microsoft Toolkit

This is a setup program which is used to install the application. The file has been seen being downloaded from docs.google.com and multiple other hosts.
Product:
Microsoft Toolkit

Version:
2.4.9.0

MD5:
93c754bb404e8b488b50920d65ce9b80

SHA-1:
249cdda4c4017b8eb3c99ce2fb4317b058f89e43

SHA-256:
361c8ff3adfc21fcaeca82cef00c30d6200bcec0342d77f420fe40d214cb4ec4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/21/2018 3:42:52 AM UTC  (today)

File size:
34.2 MB (35,811,328 bytes)

Product version:
2.4.9.0

Copyright:
CODYQX4

Original file name:
Microsoft Toolkit.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\microsoft toolkit.exe

File PE Metadata
Compilation timestamp:
8/31/2013 12:13:38 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
786432:U1SCDRMP7YxS4tIp+mpx2Laq9Uuu3g8Oh6XLsu2R:UcCtMTN4tS+m7Tq9UHnO1u2R

Entry address:
0x21CD2F6

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
33.8 MB (35,435,520 bytes)

The file Microsoft Toolkit.exe has been seen being distributed by the following 46 URLs.

https://docs.google.com/uc?export=download&confirm=pC-B&id=0B3dR3l4GDfoCZnNFWkN1Mm9SMUE

https://docs.google.com/uc?export=download&confirm=18ZC&id=0B_X6vxOcaSYaX1NxTWJhMVFoM1U

http://download1192.mediafire.com/1cj29mw718mg/.../Microsoft Toolkit.exe

http://download839.mediafire.com/sk81xbhk3vmg/.../Microsoft Toolkit 2.4.9 #SLD.exe

http://download1211.mediafire.com/89qaou3zd62g/.../Microsoft Toolkit.exe

http://apkos2u.com/.../process.php?do=download&client=DBA5300&client_id=10&id=476

http://download1192.mediafire.com/k3s9s381lrtg/.../Microsoft Toolkit.exe

https://doc-04-c0-docs.googleusercontent.com/docs/securesc/o7nje0ghv0atg31dqbllffrfdsib6pc6/nc3pd7f4p5p4uhad5bct3oor98339dtj/1404295200000/09983157619580314463/.../0B2d1lg-k0h-zb2ZZMWxXNVZMWU0?h=16653014193614665626&e=download

http://download1704.mediafire.com/r30zy0bn82cg/.../Microsoft Toolkit.exe

http://download1957.mediafire.com/t20la82dczkg/.../Microsoft Toolkit.exe

https://docs.google.com/uc?export=download&confirm=c6I2&id=0B3dR3l4GDfoCZnNFWkN1Mm9SMUE

https://www.dropbox.com/s/.../tolkit2.4.exe

https://doc-0o-9g-docs.googleusercontent.com/docs/securesc/tvobbefllnl05aqc89ngsdhl3js2jf7o/gthl85gi5u8eh4q78ttgqnuvfdm1hho9/1467633600000/15779938461876860366/.../0B6QrIusf7TIzSlpwS1k5RHRYZ00?e=download

http://download2099.mediafire.com/4v7j67dw45sg/.../Microsoft Toolkit.exe

http://download1883.mediafire.com/7d183joj211g/.../Microsoft Toolkit.exe

http://download1943.mediafire.com/av5xndpp2e0g/.../Microsoft Toolkit.exe

temp:Microsoft Toolkit.exe

Latest 30 of 46 download URLs

Scan Microsoft Toolkit.exe - Powered by Reason Core Security