SETIspirit.exe

SETIspirit

Privat

Publisher:
Privat

Product:
SETIspirit

Description:
SETIspirit is free add-on tool for SETI@home users

Version:
2.00

MD5:
372194e77c502a3c4c84f6f6d55cc1ee

SHA-1:
6f65f3c23a6ead53bef15808ff2b438dcb1374ca

SHA-256:
aaed5997265f6ae97d9f4a93bacf19420698d0fafe80bd090c52d2aa87b02b60

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 8:52:13 PM UTC  (today)

Scan engine
Detection
Engine version

Dr.Web
BACKDOOR.Trojan
9.0.1.0121

Trend Micro House Call
TROJ_GEN.F47V0119
7.2.121

File size:
8.2 MB (8,556,544 bytes)

Product version:
2.00

Copyright:
Dirk Schwarting

Original file name:
SETIspirit.exe

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

Common path:
C:\Program Files\setispirit\setispirit.exe

File PE Metadata
Compilation timestamp:
12/22/2013 5:07:11 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:I4W/Oy2HyTASp9Qx+RVVhwp4D8a41aLEewBDRwRmkW2/:IQyTmxWVV2ptXaLFoGRmkW2/

Entry address:
0x1E71C

Entry point:
68, E0, EA, 41, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, A8, CE, AF, 3A, 7D, F3, 6D, 4D, 89, 17, CB, 31, 2B, 60, 02, F1, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 47, 00, C0, DA, 47, 00, 53, 45, 54, 49, 73, 70, 69, 72, 69, 74, 00, 00, 06, 50, 83, 00, 00, 00, 00, 00, 01, 00, 07, 00, 38, 98, 43, 00, 00, 00, 00, 00, FF, FF, FF, FF, FF, FF, FF, FF, 00, 00, 00, 00, DC, 99, 43, 00, 14, 03, C2, 00, 00, 00, 00, 00, 18, 5D, 14, 03, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.3290

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
8.1 MB (8,515,584 bytes)

The executing file has been seen to make the following network communication in live environments.

TCP (HTTP):
Connects to promotionservice-schmitt.de  (82.165.73.253:80)

Scan SETIspirit.exe - Powered by Reason Core Security