supercopier-windows-x86_64-4.0.1.13-setup.exe

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from lb.cdn.m6web.fr and multiple other hosts.
MD5:
6c2e2e436721553ad00b5a955ebe4b5d

SHA-1:
530bdf35808ee75dd3abd84bc4d9b4720516b195

SHA-256:
df2bd6b27b3dce0400508b97b09e6981a2b26653e568b5d4f2175b936acd053e

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
4/26/2024 1:52:48 PM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
TROJ_GEN.F47V0324
7.2.125

File size:
6.3 MB (6,652,804 bytes)

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Common path:
C:\users\{user}\downloads\supercopier-windows-x86_64-4.0.1.13-setup.exe

File PE Metadata
Compilation timestamp:
12/5/2009 11:50:46 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
196608:0QNctOYUGws027mvx+EFyjxgKBRUmZxR17Nv:0QOgD002C5JwPZTv

Entry address:
0x323C

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 30, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B4, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 58, 3F, 42, 00, E8, 09, 2C, 00, 00, A3, A4, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 58, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, B8, 91, 40, 00, 68, A0, 36, 42, 00, E8, BC, 28, 00, 00, FF, 15, B0, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, AA, 28, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
23 KB (23,552 bytes)

The file supercopier-windows-x86_64-4.0.1.13-setup.exe has been seen being distributed by the following 44 URLs.

http://lb.cdn.m6web.fr/d/c/a/756a8767db363eae7f7b08373e8ac4fe/5892fb16/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/1f3525994665a7ffa8a625174075a6c1/57e27d08/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/50b6d5dcb2e44e07f8107cc83b01e7c9/589dbee7/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/64b745959ca4adc2177a462e4c47f9d6/560a59f8/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/ef669d5c005e1876f4c78143e3bbdb8d/57c1fb6d/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/bf1ba6885acb47a8ca7042a71edb492e/57881332/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/a1b2357a5243f7642ba6099ee5070358/585c4f76/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/5079e09d3eb4f1bb3a7143fcd7076ea4/5806b6c7/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/82fe3907adf98f646c17a1a112444f86/58495fcf/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/f1408b4d4b215691fbb4d295fa8635e9/56566a0d/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/c58dac38284f2ba30eaee3654b781f2c/57d458b9/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://telechargement1.pcastuces.com/temp6bs2/.../supercopier-windows-x86_64-4.0.1.13-setup.exe

http://lb.cdn.m6web.fr/d/c/a/53c9aceadefc19dc5dbb845e0d8c693d/57af289f/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/74d4d6c2ecb7d2c8a75b919ff6523f62/581399e2/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

temp:supercopier-windows-x86_64-4.0.1.13-setup_2.exe

http://lb.cdn.m6web.fr/d/c/a/89db7e6dbb55df39052b911397f55999/5592e132/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://lb.cdn.m6web.fr/d/c/a/b442b7ea93ae1f9600dda8e26285398e/57bc9915/soft/.../supercopier_4-0-1-13_fr_11010_64.exe

http://www.lelogicielgratuit.com/.../64176ebf.dl

http://ftp.myihor.ru/ab3c52a/system/.../supercopier-windows-x86_64-4.0.1.13-setup.exe

temp:SuperCopier Ultimate v4.0.1.13 x64.exe

Latest 30 of 44 download URLs

Scan supercopier-windows-x86_64-4.0.1.13-setup.exe - Powered by Reason Core Security