itunes64setup.exe

This is a setup and installation application. The file has been seen being downloaded from appldnld.apple.com.edgesuite.net.
MD5:
580223f17e642e2a40797ea64c9a6d20

SHA-1:
65f8c77170db0986a96caaaae04d320ae2c74d75

SHA-256:
644a9f94d514a1be440d3ac68938ee20b036b9782cde76a765b12bf7c97ae1ea

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 12:38:33 PM UTC  (today)

File size:
2.1 MB (2,197,785 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\itunes64setup.exe

File PE Metadata
Compilation timestamp:
4/29/2010 1:45:48 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:Me48kSrHsQvVrko1fIQHxoahdOMbOB3WfZTkAPGu:n4aHsKVRRo6OaOoBTkq

Entry address:
0xDC58

Entry point:
48, 83, EC, 28, E8, 97, 50, 00, 00, 48, 83, C4, 28, E9, 1A, FE, FF, FF, CC, CC, 48, 89, 0D, 7D, F5, 00, 00, C3, 40, 53, 48, 81, EC, E0, 05, 00, 00, 83, 64, 24, 70, 00, 48, 8D, 4C, 24, 74, 33, D2, 41, B8, 94, 00, 00, 00, E8, 6C, C9, FF, FF, 4C, 8D, 5C, 24, 70, 48, 8D, 84, 24, 10, 01, 00, 00, 48, 8D, 8C, 24, 10, 01, 00, 00, 4C, 89, 5C, 24, 48, 48, 89, 44, 24, 50, FF, 15, F7, 74, 00, 00, 48, 8B, 9C, 24, 08, 02, 00, 00, 48, 8D, 54, 24, 40, 48, 8B, CB, 45, 33, C0, E8, 19, 68, 00, 00, 48, 85, C0, 74, 3B, 48, 83...
 
[+]

Entropy:
7.9843  (probably packed)

Code size:
78.5 KB (80,384 bytes)

The file itunes64setup.exe has been seen being distributed by the following URL.

Scan itunes64setup.exe - Powered by Reason Core Security