nero8_pdf_enu.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from ftp6.nero.com.
MD5:
2bebb32e7a4eb7101cea155327af05bf

SHA-1:
2494fd0f8a40af5b11cef7a43012c34ecc5329b2

SHA-256:
5ea9ec56e41bfa3ed8d3ba0a7717f200e5ac90352efccde44b953781d2ad9b7f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:42:29 PM UTC  (a few moments ago)

File size:
19.8 MB (20,712,800 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\nero8_pdf_enu.exe

File PE Metadata
Compilation timestamp:
12/7/2002 7:21:36 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
393216:1iEFdjfXi5BrA6ji+e74brTPAED/KEv8eLnCG6dQJdy1ICuwNbU2Dfhfrr:RqB860gjD/Kq1LnCHkdlpwFU2dTr

Entry address:
0x1000

Entry point:
40, C6, C3, B9, FF, C3, 18, CF, 87, FA, 80, D9, 09, 0F, AF, DF, 80, FC, 1C, F3, 74, 07, 80, CF, 9E, 24, AD, 02, CE, 0F, AF, DE, 69, C5, 6B, 20, 93, 62, 0F, BF, C2, 33, E9, 84, EF, 35, D2, C6, 3E, D7, 89, D7, 86, EB, 81, F1, AE, D9, 1B, 83, FF, C6, FF, C5, 33, C0, 78, 04, 88, E5, FE, C2, 85, DA, 77, 03, 4B, 88, DA, FE, CF, 88, EB, C7, C5, 58, 42, FE, 2B, 73, 04, F3, 0F, BF, EA, 0F, BF, ED, 81, ED, 3E, B7, C1, 51, BE, F6, CC, 09, 00, C7, C1, 51, 8A, F8, D9, 81, F6, F3, CC, 09, 00, 8D, 0D, B7, 55, 9A, EF, 8B...
 
[+]

Entropy:
7.9984  (probably packed)

Code size:
68 KB (69,632 bytes)

The file nero8_pdf_enu.exe has been seen being distributed by the following URL.

Scan nero8_pdf_enu.exe - Powered by Reason Core Security