Metro 2033 Redux Installer Wizard.exe

InstallShield

This is a setup and installation application. The file has been seen being downloaded from jeuxx-gratuit.fr.
Product:
InstallShield

Version:
1.0.0.0

MD5:
ccdb223d0ce8715db588334945e6acb5

SHA-1:
ed5836a1df3ea23e2cd3715ec1fb967a11e2f306

SHA-256:
6c6eaa9a457d577f98e4ae30f1ee2f3bff86e1e5bf1c3ff2dafdf589e08dc402

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
2/25/2025 6:27:17 AM UTC  (today)

Scan engine
Detection
Engine version

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

File size:
15.2 MB (15,943,680 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
Metro 2033 Redux Installer Wizard.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\metro 2033 redux installer wizard.exe

File PE Metadata
Compilation timestamp:
6/8/2015 1:18:54 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
393216:7Jbtb73lOJJ7zd981z8q1+qi1W31RLxR+youSaYQ7:t9LlORS1z8Jp1WLLxJoud

Entry address:
0xEE463E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
14.9 MB (15,607,808 bytes)

The file Metro 2033 Redux Installer Wizard.exe has been seen being distributed by the following URL.

Scan Metro 2033 Redux Installer Wizard.exe - Powered by Reason Core Security