no23_recorder_debug.exe

No23 Recorder

Ivan Bischof ©2003 - 2005

This is a setup program which is used to install the application. The file has been seen being downloaded from dl.no23.de.
Publisher:
Ivan Bischof ©2003 - 2005

Product:
No23 Recorder

Description:
No23 Recorder, Musik- Stream- Aufnahme und CD Rippen leicht gemacht.

Version:
2.1.0.3

MD5:
96808c630d9189ca4b9d01aa5f7d1cfe

SHA-1:
2237caa2b89993be07061be7d0856afffb5d0ecc

SHA-256:
ecbd45780f42f57469fa585a46833e2896bce4590255b219abce5bed2452ef79

Scanner detections:
5 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/29/2024 11:14:16 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAutoA
1.3.0.4959

F-Prot
W32/D_Downloader!GSA
v6.4.7.1.166

NANO AntiVirus
Virus.Win32.Gen.ccmw
0.28.0.58394

Norman
Suspicious_Gen2.QQYFR
11.20140513

Panda Antivirus
Malicious Packer
14.05.13.01

File size:
1.5 MB (1,625,088 bytes)

Product version:
2.1

Copyright:
Ivan Bischof ©2003 - 2005

Trademarks:
No23

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\users\{user}\downloads\no23_recorder_debug.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:uxmEcKh2gvNCegKWLbQlBYaYeW0wsALl:uQ3K0gFCegKPF60RA5

Entry address:
0x311000

Entry point:
9C, 60, E8, 02, 00, 00, 00, 33, C0, 8B, C4, 83, C0, 04, 93, 8B, E3, 8B, 5B, FC, 81, EB, 07, 20, 40, 00, 87, DD, 83, BD, 3D, 29, 40, 00, 01, 0F, 84, 33, 04, 00, 00, 80, BD, 52, 2F, 40, 00, 00, 74, 37, 8D, 85, FB, 2C, 40, 00, 50, FF, 95, D7, 2C, 40, 00, 8D, 8D, 51, 2E, 40, 00, 50, 51, 50, FF, 95, C7, 2C, 40, 00, 89, 85, 61, 2E, 40, 00, 58, 8D, 8D, 0F, 2E, 40, 00, 51, 50, FF, 95, C7, 2C, 40, 00, 89, 85, BB, 2C, 40, 00, 8D, BD, E5, 31, 40, 00, 33, C0, 8A, 85, 37, 29, 40, 00, 3C, 05, 74, 72, 3C, 03, 0F, 84, 9C...
 
[+]

Packer / compiler:
PEBundle v3.10

Code size:
1.6 MB (1,722,368 bytes)

The file no23_recorder_debug.exe has been seen being distributed by the following URL.

Scan no23_recorder_debug.exe - Powered by Reason Core Security