n9r6m3m2bz.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from frux0cheats.com.
MD5:
96454d90a4397c2f05ae4266fc2b2d49

SHA-1:
98a50dc71098a4c624ba69fb1b5d115e5c4d6754

SHA-256:
efaeeb32d0905b33c16e72514828c1e063bdb93df67931934c2d34052aec8b21

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/29/2024 11:00:06 AM UTC  (today)

File size:
5.3 MB (5,509,120 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\n9r6m3m2bz.exe

File PE Metadata
Compilation timestamp:
6/22/2016 6:11:04 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
98304:IHnpS9OUGn1RsSelxJr8Ld1nV6VHSDFEYlhqyangrc4Mur8Y1DQQ:EQPGvYJ8PV6CqYzlrjMurld

Entry address:
0xA36AAA

Entry point:
E9, 05, 67, 05, 00, 8B, 3C, 8B, 55, 66, 81, C6, 87, EA, 66, 0F, BC, F5, 01, C7, 66, 89, 1C, 24, 8B, 75, 0C, 8D, 64, 24, 08, E9, 4D, DF, FF, FF, 48, AE, 7D, 05, E5, FA, 8A, 1D, D0, 3E, E3, 17, E2, 04, CD, 31, D0, 0E, B3, A7, 92, 70, A1, 5A, 97, 60, E1, 99, E8, 9A, 97, 4B, 7E, 88, C3, D6, 9C, C9, 06, A8, 7D, 26, 0F, F7, 22, F1, 6A, 2A, AB, C7, 8E, AF, 24, 0D, D5, F4, 12, 3E, DF, 4C, 67, 46, 52, 8E, 87, 70, 72, DE, 7F, 6A, D1, 65, 7D, 8B, CA, 7E, BB, A7, 66, 62, D9, 54, 44, EA, 43, 70, B9, 91, B7, 58, 5B, F1...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
480 KB (491,520 bytes)

The file n9r6m3m2bz.exe has been seen being distributed by the following URL.

Scan n9r6m3m2bz.exe - Powered by Reason Core Security