krebszip.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www2.biology.ualberta.ca.
MD5:
891faf09e12ecd8a467b289f8af2b03b

SHA-1:
18fa602a61c1a2c1351328eab93b7bff8aa15fc1

SHA-256:
93ace91c2221647964f54d3f69a19d64a5fc6ed1d3e059b6946c967e9daaedb8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 7:51:54 PM UTC  (today)

File size:
764.4 KB (782,726 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\krebszip.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
12288:2Tmr8GFdXtw2WwP9xVfk7FdQgDUS6nU1TXggmtnpO69xE+tE8wexHrozVi5d+SPm:kmNRx5SCZLnwQttDE+7xLoJi5d+SPSlz

Entry point:
4D, 5A, DB, 00, 3A, 00, 00, 00, 02, 00, 01, 0E, FF, FF, C3, 0B, 80, 00, 00, 00, 0E, 00, 16, 07, 1C, 00, 00, 00, 4C, 5A, 39, 31, FF, 3F, 55, 8B, EC, 83, EC, 02, 9A, 08, 00, CB, 03, FF, 76, 08, FC, CF, FD, 06, 90, 0E, E8, 04, 00, 8B, E5, 5D, CB, FF, FF, E6, 08, 57, 56, B8, CA, 09, BA, A2, 02, 52, 50, B9, 02, 00, 51, 7F, FB, 9A, 76, 0F, 05, 07, 83, C4, 06, EC, FF, 0F, EC, F8, 11, B8, 0B, 00, FE, FF, 50, EC, FE, 8B, 5E, 08, 8B, 07, A3, A7, 8F, A3, AB, 8F, C7, 06, 7F, 18, B0, 0A, 00, 00, 8D, 46, 08, 50, FC, 06...
 
[+]

The file krebszip.exe has been seen being distributed by the following URL.

Scan krebszip.exe - Powered by Reason Core Security