pe.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from lb.cdn.m6web.fr and multiple other hosts.
MD5:
31442eb584b0d043d3ed96900e04d206

SHA-1:
21f87122e4b84e0b609c09b13772a58034ffcdfa

SHA-256:
3551adae798e7bd9a6254f49e50a7ad5964a1722e7b7245aa79ee772b4566a78

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 5:57:04 PM UTC  (today)

File size:
2.1 MB (2,199,797 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\pe.exe

File PE Metadata
Compilation timestamp:
10/6/1999 6:33:39 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
3.0

CTPH (ssdeep):
49152:5tNwl0N0gy6bTS2rfo9sr4wyZjoXZ2EHYNW42N7u3lhU:5tNeCFdbTFrfoOrTyjoZHYM48SU

Entry address:
0x1020

Entry point:
55, 8B, EC, 81, EC, 14, 04, 00, 00, 53, 56, 57, 6A, 00, FF, 15, 08, 41, 40, 00, 68, 00, 50, 40, 00, FF, 15, 04, 41, 40, 00, 85, C0, 74, 29, 6A, 00, A1, 00, 20, 40, 00, 50, FF, 15, 20, 41, 40, 00, 8B, F0, 6A, 06, 56, FF, 15, 1C, 41, 40, 00, 6A, 03, 56, FF, 15, 1C, 41, 40, 00, 33, C0, E9, 0C, 03, 00, 00, 68, 02, 7F, 00, 00, 33, F6, 56, FF, 15, 14, 41, 40, 00, 50, FF, 15, 10, 41, 40, 00, 68, 00, 02, 00, 00, 8D, 85, EC, FD, FF, FF, 50, 56, FF, 15, 00, 41, 40, 00, 56, B8, 00, 00, 00, 80, 50, 8D, 8D, EC, FD, FF...
 
[+]

Entropy:
7.9826

Developed / compiled with:
Microsoft Visual C++

Code size:
2.5 KB (2,560 bytes)

The file pe.exe has been discovered within the following program.

360Amigo System Speedup is a tool of Windows that works quickly in identifying the problem and fix it if there are some mistakes that result in slow system performance.
www.360amigo.com
56% remove it
 
Powered by Should I Remove It?

The file pe.exe has been seen being distributed by the following 14 URLs.

http://lb.cdn.m6web.fr/d/c/a/dd5116d549c7a4faebf536f32d7844cf/58891e6e/soft/.../Pochette_express_2.0_beta_7.exe

http://lb.cdn.m6web.fr/d/c/a/a4d331f7b9272ecafbef75d5fa62c90e/58354d60/soft/.../Pochette_express_2.0_beta_7.exe

ftp://66e9156f4f1cf039edf22dcf464d29e9:1351299915@ftpclubicb9b.clubic.com/.../Pochette_express_2.0_beta_7.exe

http://lb.cdn.m6web.fr/d/c/a/3b637ac2fcb38ca26513958f961329d3/57e39ed9/soft/.../Pochette_express_2.0_beta_7.exe

https://dw.uptodown.com/dwn/AunVXCwjdMohftBSOLKglE-0Ojo0zJkG10XfxOHX84jKzfyWKlKID6a1qgzk5lbEoEm3b_64w0BSWQvbsc0GLe1dBCEQIEQBp0WlDO58MlkA-L8_WppsFxNeQiVhJ-gA/JTeZoiJU09dySHlcfqdBgHUePpLiZxDG21BY5Joev2taM6eN7yVj9_BkLEvPgQ9Dw5lq3U8axDW5XGCctuIviMC3vbQk0zWUh84mzD73pTPmFIwG687kzKa3EEnXpgE0/0Mu824Jvqpp3VZuv87FsMXzSVwjiTXXgY3_8ABtnI1OPBUg-TjGEC1k1kveEwjl6n-NysFLzncBwJpsqRVJq40hCeRfsSqskLtLxGQd8scNJOREKqj7oPhZRVQy4rHQh/.../

https://dw.uptodown.com/dwn/Xe_bJGMI4zSbUJUkYFhOuWVU4Pb0HLAXqAAhY3OqCcriNGEe7aIdMDAVYXeBI34U-sDOebHdD2lW2KtBrp2AEyOS5lUXtuSv6n9fxHjxNoRzYmXxIzXvwVVmFCv6XQQ6/sktg76WqAlU0wflK7dALcsdvoxjPb4tR8wPxpFuKXvtLLTdyyo7EuW1FEpRGZmj-A3iNfdI_meUqUni2uKw9kOKZxYXD_AAGPYF0nUkktO6r4TKxwxFMr0s_Y9qHBhZh/OAmXBMtTd9A47yTuEvy2zi4XoB3PrbVwWzhLsL9wKQ13jIjPR8cjPkQ2g8WhGPpAIyqzz9LCWA4H7XZFPJsAVrd76KMd8YyY-WnDYaHy0Mgp_NvMAYzFPoV_3sLgruX4/.../

http://lb.cdn.m6web.fr/d/c/a/009cbd628d3c3303ebe00246d41d6318/58126cba/soft/.../Pochette_express_2.0_beta_7.exe

http://www.commentcamarche.net/download/.../telecharger-34055043-pochette-express

http://alexelod.free.fr/pe7.exe

Scan pe.exe - Powered by Reason Core Security