Palloncino.exe

Galassie

vbscuola

This is a setup program which is used to install the application. The file has been seen being downloaded from www.cstlodi.it.
Publisher:
vbscuola

Product:
Galassie

Version:
1.00

MD5:
81118ec7ae3d28dd658fbeea7e5dfd76

SHA-1:
4154c449440ba13134b1d183f77fd1d08ac288ae

SHA-256:
236c1d3886bc8d03ca313948214142aac0d9063ced6220acbdaad3a53f1375c1

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 2:37:32 AM UTC  (today)

File size:
2.9 MB (3,031,040 bytes)

Product version:
1.00

Original file name:
Palloncino.exe

File type:
Executable application (Win32 EXE)

Language:
Italian (Italy)

File PE Metadata
Compilation timestamp:
10/16/2005 2:30:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:H7Lh6gpQ3UTU72/to3iZLmkUAJV70++UTLtfUO1OEeibnAKHhMyZtD/R/SNqjPOh:H7Oi5hFUOLOqBXEyLDJKNkszi

Entry address:
0x1360

Entry point:
68, 10, 1E, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 40, B9, 37, EF, 7E, 82, 7A, 43, AB, DF, F7, CA, 55, 30, 42, 0B, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 73, 00, 73, 00, 50, 00, 50, 61, 6C, 6C, 6F, 6E, 63, 69, 6E, 6F, 00, 8E, D4, 00, FF, 6B, 00, 00, 00, 00, FF, CC, 31, 00, 00, 4D, FD, 4D, E1, 6C, AE, E5, 4E, A2, 42, 72, 04, AA, D4, ED, 18, 40, 34, 1A, 30, B1, BE, 35, 48, 9A, D3, 7F, 26, 6F, 4A, 5E, A4, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
32 KB (32,768 bytes)

The file Palloncino.exe has been seen being distributed by the following URL.

Scan Palloncino.exe - Powered by Reason Core Security