7z922-arm.exe

7-Zip

Igor Pavlov

This is a setup and installation application. The file has been seen being downloaded from i_eazel-com_7-zip-file-manager-9.foutrirewio.com and multiple other hosts.
Publisher:
Igor Pavlov

Product:
7-Zip

Description:
7z Setup SFX small

Version:
9.22 beta

MD5:
6a2d43da9811a6ced3b673dae8dd4ca9

SHA-1:
c37f3e368146adf189cc872e1ec6a65ae325715a

SHA-256:
8f54f62e419192d13bfc629f31bd823deea27d5c1247134c3e84c30a46e3ee87

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 4:23:03 PM UTC  (today)

File size:
578.1 KB (591,973 bytes)

Product version:
9.22 beta

Copyright:
: Igor Pavlov : Public domain

Original file name:
7zS2.sfx.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\7z922-arm.exe

File PE Metadata
Compilation timestamp:
4/18/2011 10:45:28 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:ysOoLfbuRmDlwpzCJrpSVaZP5Jv46/Z+tM6XrVGy9OXKw8O:BERNpup5Zvhg4OYKwV

Entry address:
0x7F4C

Entry point:
0D, C0, A0, E1, F0, 58, 2D, E9, 1C, B0, 8D, E2, 04, D0, 4D, E2, 03, 40, A0, E1, 02, 50, A0, E1, 01, 60, A0, E1, 00, 70, A0, E1, 25, 00, 00, EB, 04, 30, A0, E1, 05, 20, A0, E1, 06, 10, A0, E1, 07, 00, A0, E1, 0A, E5, FF, EB, 00, 40, A0, E1, 20, 40, 0B, E5, 01, 00, 00, EA, 00, 40, A0, E1, 77, 00, 00, EB, 04, 00, A0, E1, 75, 00, 00, EB, F0, 68, 1B, E9, 1E, FF, 2F, E1, 04, E0, 2D, E5, 00, 30, 90, E5, 00, 10, A0, E1, 00, 00, 93, E5, 1E, 01, 00, EB, 04, F0, 9D, E4, 30, 40, 2D, E9, 38, 40, 9F, E5, 30, 50, 9F, E5...
 
[+]

Entropy:
7.9683  (probably packed)

Code size:
30.5 KB (31,232 bytes)

The file 7z922-arm.exe has been seen being distributed by the following 5 URLs.

http://i_eazel-com_7-zip-file-manager-9.foutrirewio.com/crawled_soft/2/8/.../28544-661074-7-zip-file-manager.exe

Scan 7z922-arm.exe - Powered by Reason Core Security