texturepacker-3.0.8-win32.msi

Andreas Löw

The program is a setup application that uses the Windows MSI installer. The file has been seen being downloaded from d26bu41yhsbbx.cloudfront.net and multiple other hosts.
Publisher:
Andreas Löw  (signed and verified)

MD5:
54fbd2611f755103c74659acddcc937c

SHA-1:
bffacc13cb82b43a6be43d74e71034a9e4811d91

SHA-256:
5dd345dc33a20bc59fd67628d4448e4ed3e8fa908cd2ae8fed9787c6c890cf97

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/15/2017 10:51:06 PM UTC  (today)

Scan engine
Detection
Engine version

NANO AntiVirus
Trojan.Win32.Ramnit.cspjsp
0.28.0.57029

File size:
18.4 MB (19,247,104 bytes)

File type:
Windows Installer (used for software installtaion and updates)

Installer:
Windows MSI

Common path:
C:\users\{user}\downloads\texturepacker-3.0.8-win32.msi

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/26/2012 2:00:00 AM

Valid to:
6/27/2017 1:59:59 AM

Subject:
CN=Andreas Löw, O=Andreas Löw, STREET=Brumersweg 15/1, L=Neu-Ulm, S=Bayern, PostalCode=89233, C=DE

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
45C1C4C426E1A71A093B6A1749411DBB

The file texturepacker-3.0.8-win32.msi has been seen being distributed by the following 2 URLs.

Scan texturepacker-3.0.8-win32.msi - Powered by Reason Core Security