windows 10 aio build 14316 ful downloader__3687_i1913265714_il407093.exe

Smart Inst

Droms

The application windows 10 aio build 14316 ful downloader__3687_i1913265714_il407093.exe has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application, however the file is not signed with an authenticode signature from a trusted source. The file has been seen being downloaded from www.fishmish.space.
Publisher:
Droms

Product:
Smart Inst

Description:
smart install

Version:
201.125.95.109

MD5:
e895dd366a93baa34edc0682852d23ff

SHA-1:
92f225e1473f8ea1bf08d1d4240082aeb1bc3467

SHA-256:
b52d3491a733ccff7b8b11fb73b131a34079665c53c38a74939ea8de4a980c1f

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
4/30/2024 11:23:40 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.InstallMonetize (M)
16.4.23.11

File size:
931 KB (953,344 bytes)

Product version:
201.125.95.109

Copyright:
LC 2015

Trademarks:
Trd Mark

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\windows 10 aio build 14316 ful downloader__3687_i1913265714_il407093.exe

File PE Metadata
Compilation timestamp:
4/22/2016 2:42:58 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
12288:59K9EoN1PidCMwNTjy45+Py+xzC4HxhzNrOoIcNXew2KWPT/8LAJIrj7+2lC7V72:5Lo1R65xzC4HtrOoIaXbZWLg3vavO

Entry address:
0x71CE

Entry point:
E8, 6C, 52, 00, 00, E9, 89, FE, FF, FF, 2D, A4, 03, 00, 00, 74, 22, 83, E8, 04, 74, 17, 83, E8, 0D, 74, 0C, 48, 74, 03, 33, C0, C3, B8, 04, 04, 00, 00, C3, B8, 12, 04, 00, 00, C3, B8, 04, 08, 00, 00, C3, B8, 11, 04, 00, 00, C3, 8B, FF, 56, 57, 8B, F0, 68, 01, 01, 00, 00, 33, FF, 8D, 46, 1C, 57, 50, E8, 12, F9, FF, FF, 33, C0, 0F, B7, C8, 8B, C1, 89, 7E, 04, 89, 7E, 08, 89, 7E, 0C, C1, E1, 10, 0B, C1, 8D, 7E, 10, AB, AB, AB, B9, 48, F0, 41, 00, 83, C4, 0C, 8D, 46, 1C, 2B, CE, BF, 01, 01, 00, 00, 8A, 14, 01...
 
[+]

Code size:
99.5 KB (101,888 bytes)

The file windows 10 aio build 14316 ful downloader__3687_i1913265714_il407093.exe has been seen being distributed by the following URL.