spamihilator-x64-1.6.0.exe

Spamihilator

Michel Krämer

This is a setup program which is used to install the application. The file has been seen being downloaded from www.netzwelt.de and multiple other hosts.
Publisher:
Michel Krämer

Product:
Spamihilator

Version:
1,6,0

MD5:
e3940724343cf571509a83600cd245d7

SHA-1:
9d2aaad6a53364909097eb78ee299e1eb619edb2

SHA-256:
f8002dca28571e3a2afd54210afaa3eebe52a6f00f5e04328759d3a4b50e72a8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/27/2024 4:06:00 AM UTC  (today)

File size:
3.4 MB (3,596,800 bytes)

Product version:
1,6,0

Copyright:
Copyright © 2002 - 2014 Michel Krämer. All rights reserved.

Original file name:
spamihilator.exe

File type:
Executable application (Win64 EXE)

Language:
German (Germany)

Common path:
C:\users\{user}\downloads\fc14996dfa99adfc7baae624196888c5\a5add5232de0db4f432b2a9ca486c848\spamihilator-x64-1.6.0.exe

File PE Metadata
Compilation timestamp:
1/14/2010 8:28:44 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:4RnBICLPIuBChTdGzD1m2JNOgLBCgqoia3+bq7:4RnBf/B8dGUaNOrgqpp

Entry address:
0x5BD8

Entry point:
48, 83, EC, 28, E8, 97, 40, 00, 00, 48, 83, C4, 28, E9, 1A, FE, FF, FF, CC, CC, 48, 89, 4C, 24, 08, 48, 81, EC, 88, 00, 00, 00, 48, 8D, 0D, E1, 3C, 01, 00, FF, 15, 33, E6, 00, 00, 4C, 8B, 1D, CC, 3D, 01, 00, 4C, 89, 5C, 24, 58, 45, 33, C0, 48, 8D, 54, 24, 60, 48, 8B, 4C, 24, 58, E8, DD, A3, 00, 00, 48, 89, 44, 24, 50, 48, 83, 7C, 24, 50, 00, 74, 41, 48, C7, 44, 24, 38, 00, 00, 00, 00, 48, 8D, 44, 24, 48, 48, 89, 44, 24, 30, 48, 8D, 44, 24, 40, 48, 89, 44, 24, 28, 48, 8D, 05, 8C, 3C, 01, 00, 48, 89, 44, 24...
 
[+]

Code size:
74.5 KB (76,288 bytes)

The file spamihilator-x64-1.6.0.exe has been seen being distributed by the following 4 URLs.

http://www.netzwelt.de/.../9370_2-spamihilator.html?sig=c000b6047c3f9ebe2f342e64a3f4b3be

http://www.filehorse.com/download/file/.../

Scan spamihilator-x64-1.6.0.exe - Powered by Reason Core Security