setup_clientv7.exe

Gestac

SABE SOFT snc

This is a self-extracting archive and installer. The file has been seen being downloaded from www.gestac.com.
Publisher:
SABE SOFT  (signed by SABE SOFT snc)

Product:
Gestac

Description:
Gestac Client Setup

Version:
7.0.0.125

MD5:
190a8587a154a77779d45fe5bbc86e2d

SHA-1:
1b59e80d5520f3578a3bdf728e1ea35ea05d6ec3

SHA-256:
d5d36912e8532c896f411c98999b4ca4fd1effe1a16191594d0f12ebf580773d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 3:31:49 PM UTC  (today)

File size:
3.6 MB (3,802,200 bytes)

Product version:
7.0

Copyright:
SABE SOFT 2013

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\software\gestac\setup_clientv7.exe

Digital Signature
Signed by:

Authority:
The USERTRUST Network

Valid from:
11/23/2010 1:00:00 AM

Valid to:
11/23/2013 12:59:59 AM

Subject:
CN=SABE SOFT snc, O=SABE SOFT snc, STREET="Via Macello, 65", L=Bolzano, S=BZ, PostalCode=39100, C=IT

Issuer:
CN=UTN-USERFirst-Object, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, S=UT, C=US

Serial number:
7F32353BE712802DF5CEE4C82B9772F0

File PE Metadata
Compilation timestamp:
9/7/2013 8:53:47 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
98304:dp06pNbVQwYGrW02WYGrW02Z8h2X1MNV6ebm3rC:/0tw2Q2ohO+n6Km3+

Entry address:
0x1CE0

Entry point:
55, 8B, EC, 83, EC, 44, 56, FF, 15, 70, 20, 40, 00, 8B, F0, 8A, 06, 3C, 22, 75, 1F, 8A, 46, 01, 46, 84, C0, 74, 0F, 8D, 49, 00, 3C, 22, 74, 0D, 8A, 46, 01, 46, 84, C0, 75, F4, 80, 3E, 22, 75, 0D, 46, EB, 0A, 3C, 20, 7E, 06, 46, 80, 3E, 20, 7F, FA, 8A, 06, 84, C0, 74, 0C, 3C, 20, 7F, 08, 8A, 46, 01, 46, 84, C0, 75, F4, 8D, 45, BC, 50, C7, 45, E8, 00, 00, 00, 00, FF, 15, C4, 20, 40, 00, E8, 7A, 00, 00, 00, 68, 08, 30, 40, 00, 68, 00, 30, 40, 00, E8, 3B, 00, 00, 00, 0F, B7, 45, EC, 83, C4, 08, F6, 45, E8, 01...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
4 KB (4,096 bytes)

The file setup_clientv7.exe has been seen being distributed by the following URL.

Scan setup_clientv7.exe - Powered by Reason Core Security