ns4ioswin.exe

Netspark Ltd

This is a setup program which is used to install the application. The file has been seen being downloaded from ios.netsparkmobile.com.
Publisher:
Netspark Ltd  (signed and verified)

MD5:
b1314acde3a37f94ddd45a1738452a70

SHA-1:
1c4fa165901f4bddeaa316ab9a6e06597477efb5

SHA-256:
2183f8403c917f45f116b7451e87067849c77ef996f6541ec99a4e11466fd273

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/2/2024 12:59:18 AM UTC  (today)

File size:
10.3 MB (10,831,384 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ns4ioswin.exe

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
1/29/2016 3:48:12 AM

Valid to:
1/29/2019 3:48:12 AM

Subject:
CN=Netspark Ltd, O=Netspark Ltd, L=Petach-Tikva, S=HaMerkaz, C=IL

Issuer:
CN=StartCom Class 3 Object CA, OU=StartCom Certification Authority, O=StartCom Ltd., C=IL

Serial number:
30BF40FE72B06D6022C2D72B8F844BFE

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.24

CTPH (ssdeep):
196608:nE38m4JwzR6yYUB5JvNSfqI0TAJK4RSLSdBN/c/J6c:28m+wzYeSfqv8nRiMBYJd

Entry address:
0x14D0

Entry point:
83, EC, 0C, C7, 05, D8, E2, 41, 00, 01, 00, 00, 00, E8, 9E, 8A, 00, 00, 83, C4, 0C, E9, 96, FC, FF, FF, 8D, B6, 00, 00, 00, 00, 83, EC, 0C, C7, 05, D8, E2, 41, 00, 00, 00, 00, 00, E8, 7E, 8A, 00, 00, 83, C4, 0C, E9, 76, FC, FF, FF, 90, 90, 90, 90, 90, 90, 83, EC, 1C, A1, D0, F2, 41, 00, 8B, 00, 89, 44, 24, 04, A1, BC, F2, 41, 00, 8B, 00, 89, 04, 24, E8, B3, 3C, 00, 00, 89, 44, 24, 04, A1, BC, F2, 41, 00, 8B, 00, 89, 04, 24, E8, 40, 12, 00, 00, 83, C4, 1C, C2, 10, 00, 90, 90, 90, 90, 90, 90, 90, 90, 90, 90...
 
[+]

Entropy:
7.9965  (probably packed)

Code size:
39 KB (39,936 bytes)

The file ns4ioswin.exe has been seen being distributed by the following URL.

Scan ns4ioswin.exe - Powered by Reason Core Security