setup.exe

Burlington Education LTD

This is a setup and installation application. The file has been seen being downloaded from assets.epson-europe.com and multiple other hosts.
Publisher:
BurlingtonEnglish  (signed by Burlington Education LTD)

Product:
BurlingtonEnglish

Version:
1.0

MD5:
a51e90347f714040fc3d1f616c4fc1bf

SHA-1:
3bbc782a5cd2cfa6cf055526834562245c8d257a

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
4/26/2024 2:31:10 AM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
Suspicious_GEN.F47V0309
7.2.166

Zillya! Antivirus
Trojan.Genome.Win32.250744
2.0.0.2215

File size:
2.4 MB (2,549,280 bytes)

Product version:
1.0

Copyright:
Copyright (C) BurlingtonEnglish

Original file name:
BurlingtonEnglish.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\My documents\downloads\setup.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
12/23/2012 4:00:00 PM

Valid to:
12/24/2015 3:59:59 PM

Subject:
CN=Burlington Education LTD, O=Burlington Education LTD, L=Limassol, S=Limassol, C=CY, SERIALNUMBER=HE83840, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.3=CY

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
01F6693B280F3F50AEA31C66BF5051B0

File PE Metadata
Compilation timestamp:
11/29/2012 12:50:22 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:KkKacP5pDdEsUArqYjKdwwoY1Tx4YkQ+v1jRzo027OnsVTNp:K5hP5pDdaA+YjvwoY1Tx4NjRM7OnoD

Entry address:
0x2F587

Entry point:
E8, 30, 9F, 00, 00, E9, 79, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 55, 08, 53, 56, 57, 33, FF, 3B, D7, 74, 07, 8B, 5D, 0C, 3B, DF, 77, 1E, E8, 88, 3A, 00, 00, 6A, 16, 5E, 89, 30, 57, 57, 57, 57, 57, E8, 11, 3A, 00, 00, 83, C4, 14, 8B, C6, 5F, 5E, 5B, 5D, C3, 8B, 75, 10, 3B, F7, 75, 07, 33, C0, 66, 89, 02, EB, D4, 8B, CA, 0F, B7, 06, 66, 89, 01, 41, 41, 46, 46, 66, 3B, C7, 74, 03, 4B, 75, EE, 33, C0, 3B, DF, 75, D3, 66, 89, 02, E8, 3F, 3A, 00, 00, 6A, 22, 59, 89, 08, 8B, F1, EB, B3, 8B, FF, 55, 8B, EC, 83, EC...
 
[+]

Entropy:
7.4286

Code size:
268.5 KB (274,944 bytes)

The file setup.exe has been seen being distributed by the following 5 URLs.

http://assets.epson-europe.com/gb/en/connect/.../Setup.exe

http://burlingtonenglish.com/download/.../setup.exe

Scan setup.exe - Powered by Reason Core Security