spamfighter.exe

SPAMfighter

SPAMfighter ApS

This is a self-extracting archive and installer. The file has been seen being downloaded from www.kaldata.com.
Publisher:
SPAMfighter ApS  (signed and verified)

Product:
SPAMfighter

Description:
SPAMfighter Installation Package

Version:
7.6.127.0

MD5:
db0ba8657a2bd2d41bf85a4e70645d7b

SHA-1:
943d931228bc9a3a8358287425431627ca152a68

SHA-256:
76eef30c5125c7ca6c7559b3689c1608ca5df1d0ed80d738a3f46747b7ed27c6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 4:48:57 AM UTC  (today)

File size:
23.6 MB (24,704,744 bytes)

Product version:
7.6.127.0

Copyright:
Copyright (C) 2010 SPAMfighter ApS

Original file name:
SPAMfighterSetup.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\spamfighter.exe

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
3/3/2014 6:00:00 PM

Valid to:
4/23/2016 6:59:59 PM

Subject:
CN=SPAMfighter ApS, OU=Application Development, O=SPAMfighter ApS, L=Copenhagen, S=Copenhagen, C=DK

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
3D8B08C7EF9D183DAC33073CF32C2BA4

File PE Metadata
Compilation timestamp:
12/3/2015 3:19:02 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:AFPZ3IbNAAR4XTI6R2XPDhSkGfgesOBy4Ec4DtIOoWNBSXCk+Rsh1Z1KCjvWD:AFB3IZBRm0O2Xl0ofyy4E7Lb/8hjTeD

Entry address:
0x20AC3

Entry point:
E8, BB, 89, 00, 00, E9, 78, FE, FF, FF, 3B, 0D, 70, 94, 45, 00, 75, 02, F3, C3, E9, 3D, 8A, 00, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 56, 8B, F1, C6, 46, 0C, 00, 85, C0, 75, 63, E8, 6F, 74, 00, 00, 89, 46, 08, 8B, 48, 6C, 89, 0E, 8B, 48, 68, 89, 4E, 04, 8B, 0E, 3B, 0D, E0, 99, 45, 00, 74, 12, 8B, 0D, F8, 98, 45, 00, 85, 48, 70, 75, 07, E8, 94, 1F, 00, 00, 89, 06, 8B, 46, 04, 3B, 05, 30, 9F, 45, 00, 74, 16, 8B, 46, 08, 8B, 0D, F8, 98, 45, 00, 85, 48, 70, 75, 08, E8, DE, 99, 00, 00, 89, 46, 04, 8B, 46, 08, F6...
 
[+]

Entropy:
7.9817  (probably packed)

Code size:
254.5 KB (260,608 bytes)

The file spamfighter.exe has been seen being distributed by the following URL.

Scan spamfighter.exe - Powered by Reason Core Security