installer_tp-link_tl-wn551g_no_definido_english.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.tp-link.com and multiple other hosts.
MD5:
4998de8eabdfa5569319596d8dae25ee

SHA-1:
710a3b993a3377d523805e6e52d7d809683d4049

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
2/25/2025 1:33:05 PM UTC  (today)

Scan engine
Detection
Engine version

Clam AntiVirus
Win.Trojan.Ramnit-6279
0.98/21511

File size:
14.1 MB (14,754,629 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Documents and Settings\{user}\Local settings\temp\installer_tp-link_tl-wn551g_no_definido_english.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
393216:0mrNrMopAy6lv8/i3xOg88a9jmYVIQsrdZfwqwIXVs:hNrppAy6R8a3099nqPBZYpqVs

Entry point:
50, 4B, 03, 04, 0A, 00, 00, 00, 00, 00, CB, 83, 56, 37, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 1D, 00, 00, 00, 54, 4C, 2D, 57, 4E, 35, 31, 30, 47, 5F, 35, 35, 30, 47, 5F, 35, 35, 31, 47, 2F, 57, 69, 6E, 39, 38, 5F, 4D, 45, 2F, 50, 4B, 03, 04, 0A, 00, 00, 00, 00, 00, CB, 83, 56, 37, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 2A, 00, 00, 00, 54, 4C, 2D, 57, 4E, 35, 31, 30, 47, 5F, 35, 35, 30, 47, 5F, 35, 35, 31, 47, 2F, 57, 69, 6E, 39, 38, 5F, 4D, 45, 2F, 44, 72, 69, 76, 65, 72, 20, 46, 69, 6C...
 
[+]

Entropy:
7.9994  (probably packed)

The file installer_tp-link_tl-wn551g_no_definido_english.exe has been seen being distributed by the following 2 URLs.

http://www.tp-link.com/resources/.../2007115162723.zip