nero_free_rus1.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from bibka.org.
MD5:
e25d94a275f0d17568c299401b6489ed

SHA-1:
34030acf34a5ea987e2d6e237616689979c0bbb1

SHA-256:
a333b6fc5d07a5610d2c000f497000e34618a9f383369ddcda1b13ed3c43c3ab

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 4:38:26 PM UTC  (today)

File size:
357 Bytes

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\nero_free_rus1.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
6:Wuzqq0FVPJtEfORHTew/flYJhKKUaKvz3XWchN8ew/flYJhKKUaQ:WkYFVxtnjFuKKUFv7XLLwFuKKUb

Entry point:
0A, 57, 61, 72, 6E, 69, 6E, 67, 3A, 20, 66, 6F, 70, 65, 6E, 28, 2E, 2E, 2F, 75, 70, 6C, 6F, 61, 64, 73, 2F, 66, 69, 6C, 65, 73, 2F, 31, 33, 36, 37, 30, 34, 34, 38, 34, 32, 5F, 6E, 65, 72, 6F, 5F, 66, 72, 65, 65, 5F, 72, 75, 73, 2E, 65, 78, 65, 29, 3A, 20, 66, 61, 69, 6C, 65, 64, 20, 74, 6F, 20, 6F, 70, 65, 6E, 20, 73, 74, 72, 65, 61, 6D, 3A, 20, 4E, 6F, 20, 73, 75, 63, 68, 20, 66, 69, 6C, 65, 20, 6F, 72, 20, 64, 69, 72, 65, 63, 74, 6F, 72, 79, 20, 69, 6E, 20, 2F, 68, 6F, 6D, 65, 2F, 63, 2F, 63, 6F, 6F, 6B...
 
[+]

The file nero_free_rus1.exe has been seen being distributed by the following URL.

Scan nero_free_rus1.exe - Powered by Reason Core Security