mobogenie_setup_2.1.23_16.exe

The program is a setup application that uses the Nullsoft Scriptable Install System installer. The file has been seen being downloaded from server.mobogenie.com.
MD5:
a3fea1677392ef16211195c7c0b682b9

SHA-1:
c8e45296aa88f656f01a0dc7db580caeeda78720

SHA-256:
b514a4f8dfa7934529b18a5cbbe80e75d078120b6939ffc15c74971a081cddc5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 8:03:58 PM UTC  (today)

File size:
16.8 MB (17,571,032 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Scriptable Install System

Common path:
C:\users\{user}\downloads\mobogenie_setup_2.1.23_16.exe

File PE Metadata
Compilation timestamp:
12/5/2009 2:50:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:eEK7bHwEAvH6AjFRbRIZDCrDH7eIU5/h0SVcoJc/UYI+xcWS:evbTAvH62CFCrDbe3z0S9CjL+

Entry address:
0x30CB

Entry point:
04, AC, 84, E5, 8D, 15, 26, 6F, DE, A6, F6, C7, 86, 69, DD, D5, AB, 17, B4, 4B, 80, FB, 82, 0F, AF, D1, 68, 99, 36, 17, 00, BA, FF, 92, 59, 83, 80, DB, A8, 81, FA, 63, EA, AA, D7, E8, 71, 00, 00, 00, BD, 86, AA, EA, FE, 8A, E4, 8D, 2D, 60, 71, 7A, 53, 84, E9, 84, D0, 69, E8, 6D, D5, 9C, 04, 69, C8, 75, C6, 34, 16, 81, C3, 05, C3, 00, 00, 41, 81, EB, 8E, 0B, 00, 00, 6B, C9, 00, 88, E7, 86, C7, 4D, 14, 4B, F7, C6, FC, AF, 01, A0, 08, F7, BD, 6F, 09, A2, FB, 81, C1, 18, 0B, 00, 00, C6, C0, 86, 0F, BE, C4, 81...
 
[+]

Entropy:
7.9999  (probably packed)

Code size:
22.5 KB (23,040 bytes)

The file mobogenie_setup_2.1.23_16.exe has been seen being distributed by the following URL.

Scan mobogenie_setup_2.1.23_16.exe - Powered by Reason Core Security