itunes64setup.exe

This is a setup and installation application. The file has been seen being downloaded from www.downloadze1.net.
MD5:
8e9919630b4aee6541425dc77e014691

SHA-1:
681d5e53684a55f28676c371e2eae98a585308df

SHA-256:
d4c1b7e49dd7941c20876718cdd820da95fa806b0963761f9c22445d214b0ace

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 1:24:17 AM UTC  (today)

File size:
1.2 MB (1,309,075 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\itunes64setup.exe

File PE Metadata
Compilation timestamp:
7/12/2015 9:18:59 AM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:Z14IpPX2TIFQY9YO+I9z9d5R+5XpEYa4drXjrKM3BCio2Glv2axYVg:ppvLFQYmOfx9dmJWYrNXjrtI2GPxcg

Entry address:
0xDF30

Entry point:
48, 83, EC, 28, E8, 9F, 50, 00, 00, 48, 83, C4, 28, E9, 12, FE, FF, FF, CC, CC, 48, 89, 0D, E5, F2, 00, 00, C3, 40, 53, 48, 81, EC, E0, 05, 00, 00, 83, 64, 24, 70, 00, 48, 8D, 4C, 24, 74, 33, D2, 41, B8, 94, 00, 00, 00, E8, 64, C9, FF, FF, 4C, 8D, 5C, 24, 70, 48, 8D, 84, 24, 10, 01, 00, 00, 48, 8D, 8C, 24, 10, 01, 00, 00, 4C, 89, 5C, 24, 48, 48, 89, 44, 24, 50, FF, 15, 4F, 72, 00, 00, 48, 8B, 9C, 24, 08, 02, 00, 00, 48, 8D, 54, 24, 40, 48, 8B, CB, 45, 33, C0, E8, 21, 68, 00, 00, 48, 85, C0, 74, 3B, 48, 83...
 
[+]

Entropy:
7.9638  (probably packed)

Code size:
79 KB (80,896 bytes)

Windows Firewall Allowed Program
Name:
itunes64setup


The file itunes64setup.exe has been seen being distributed by the following URL.

Scan itunes64setup.exe - Powered by Reason Core Security