setup.exe

Tally Update

Tally Solutions Private Limited

Publisher:
Tally Solutions Pvt. Ltd.  (signed by Tally Solutions Private Limited)

Product:
Tally Update

Description:
Tally Update Setup

Version:
1.0.1.0

MD5:
2ed60f93d9525889ce1f207c72addd61

SHA-1:
9b35c9debdffe2284e8b4424dc500deb4538926d

SHA-256:
076b40958cd0401327ee1988dd02a3c5eb298a5103cc6c1afaf96c2c248ed373

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/2/2024 11:57:40 PM UTC  (a few moments ago)

File size:
1 MB (1,074,968 bytes)

Product version:
1.0.1.0

Copyright:
© Tally Solutions Pvt. Ltd., 1988-2016

Language:
English (United States)

Common path:
C:\users\{user}\downloads\setup.exe.part

Digital Signature
Authority:
Symantec Corporation

Valid from:
2/18/2016 5:30:00 AM

Valid to:
3/20/2019 5:29:59 AM

Subject:
CN=Tally Solutions Private Limited, OU=RnD, O=Tally Solutions Private Limited, L=Bangalore, S=Karnataka, C=IN

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
4F966789BA4CE00242D910B210FAE6F4

File PE Metadata
Compilation timestamp:
5/10/2016 2:45:27 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:EQamYwB47v/iMrOfCvdxyDr3ea29mMJdvsW8wsBFcpf:i0BEiMDiSoWhsWAA

Entry address:
0x2BE90

Entry point:
B8, 88, 51, 66, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 81, EC, B3, 29, F7, 20, 16, FE, A3, 8B, 8E, E4, EF, AF, 28, 42, 88, 97, 58, 45, D0, 86, C8, 58, CF, 62, 68, D6, 06, EA, 33, 2F, 36, AB, 20, 8A, 71, 1A, 6E, 01, 39, 5F, ED, 41, C3, E2, 8B, B5, 51, A9, C8, 3D, 25, 20, 75, C7, BE, C8, 1A, 14, C8, E0, 5E, AC, 49, 3D, 4D, FF, BC, A5, C3, 00, 02, 8B, 12, 6E, 32, D4, 76, 4A, CE, 20, 9A, CA, 45, F1, E2, 36, 4C, 68, 8C, F5, 89...
 
[+]

Entropy:
7.9887

Packer / compiler:
PECompact v2

Code size:
1.2 MB (1,266,688 bytes)

The file setup.exe has been seen being distributed by the following 2 URLs.

Scan setup.exe - Powered by Reason Core Security