port royale spolszczenie (www.pobieralnia.pl0.exe

Instalator spolszczenia do Port Royale PL

This is a setup program which is used to install the application. The file has been seen being downloaded from www.pliki.pobieralnia.pl.
Product:
Instalator spolszczenia do Port Royale PL

Version:
2, 0, 0, 21

MD5:
66c668e8ba11a1127c883747af5ab394

SHA-1:
1ac755636803139dc093d272576de7e7d7f48eea

SHA-256:
076e22a178b4adbfbe126efb70c8f22dc15ca9a171d0e5caca2d422d4f9b522f

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
5/21/2024 2:19:59 PM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
PAK_Generic.005
7.2.37

Trend Micro
PAK_Generic.005
10.465.06

File size:
144.5 KB (147,931 bytes)

Product version:
2, 0, 0, 21

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
12/16/2003 3:18:07 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:TweWxbS77FD6lTZm3NFVyKH/Z8JEnOLNSryagUahZu21kA1RI301PQi:Tw3VSvFD0ZEvZ8JWOLNZagt1dDU01PQi

Entry address:
0x22A10

Entry point:
60, BE, 00, 60, 41, 00, 8D, BE, 00, B0, FE, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Packer / compiler:
UPX 2.90LZMA

Code size:
52 KB (53,248 bytes)

The file port royale spolszczenie (www.pobieralnia.pl0.exe has been discovered within the following program.

Port Royale 3  by Gaming Minds Studios GmbH
www.port-royale3.com
About 8% of users remove it
 
Powered by Should I Remove It?

The file port royale spolszczenie (www.pobieralnia.pl0.exe has been seen being distributed by the following URL.