photo_014-www.facebook.com.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from nhoi.vn.
MD5:
9cbf1c42e230ee5abf50f8de89a27d52

SHA-1:
896485dc3278f5721af2017f7c69edd35a54c8ca

SHA-256:
5167f8a4d476fd038667cfecafac78d64ca9633eee375c60a30641315a4f1284

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 12:55:45 PM UTC  (today)

File size:
149 Bytes

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\photo_014-www.facebook.com.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
3:OPGPtBskp1anP8JoaMTSRjGUS4bIK8LwBDcx2wYSUMXQWLMkmFm8oXUBQ:OPUBsjP8JoHTqDHsK8+D3w3UMAWgm8o7

Entry point:
4E, 6F, 74, 69, 66, 69, 63, 61, 63, 69, F3, 6E, 20, 64, 65, 20, 50, 61, 6E, 64, 61, 20, 41, 56, 20, 50, 72, 6F, 20, 32, 30, 31, 33, 3A, 0D, 0A, 0D, 0A, 45, 6C, 20, 61, 72, 63, 68, 69, 76, 6F, 20, 68, 74, 74, 70, 3A, 2F, 2F, 64, 63, 31, 38, 33, 2E, 34, 73, 68, 61, 72, 65, 64, 2E, 63, 6F, 6D, 2F, 64, 6F, 77, 6E, 6C, 6F, 61, 64, 2F, 53, 72, 62, 44, 39, 6F, 62, 31, 20, 65, 73, 74, 61, 62, 61, 20, 69, 6E, 66, 65, 63, 74, 61, 64, 6F, 20, 70, 6F, 72, 20, 65, 6C, 20, 76, 69, 72, 75, 73, 20, 54, 72, 6A, 2F, 43, 49...
 
[+]

The file photo_014-www.facebook.com.exe has been seen being distributed by the following URL.

Scan photo_014-www.facebook.com.exe - Powered by Reason Core Security