nrt_v2.1.6.sfx.exe

Nexus Root Toolkit

Douglas Cohen

The program is a setup application that uses the Self-extracting archive installer. The file has been seen being downloaded from qc3.androidfilehost.com and multiple other hosts.
Publisher:
WugFresh Development  (signed by Douglas Cohen)

Product:
Nexus Root Toolkit

Version:
2,1,6

MD5:
f48f9b5603d4668481bb97b712360f10

SHA-1:
f1dfb4b85bcc1ec419401de90241ca481803b20e

SHA-256:
93ae55bec9ab486629d7c81f8478f6fe371d418b336e9c9610392e26cd0d7fbd

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 7:05:18 AM UTC  (today)

File size:
43.1 MB (45,175,352 bytes)

Product version:
1.0.0.0

Copyright:
Copyright (c) 2016 WugFresh. All Rights Reserved

File type:
Executable application (Win32 EXE)

Installer:
Self-extracting archive

Language:
English (United States)

Common path:
C:\users\{user}\downloads\nrt_v2.1.6.sfx.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/26/2015 1:00:00 AM

Valid to:
3/26/2017 12:59:59 AM

Subject:
CN=Douglas Cohen, O=Douglas Cohen, L=Brooklyn, S=New York, PostalCode=11215, C=US

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
38AEBA820DD32095F6849058A4B50602

File PE Metadata
Compilation timestamp:
2/15/2015 9:00:31 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
786432:Al5IWOVDO0xy8Yklo8NczSbvNqH8l2JRr/W91x/QSZioKYUJ9R:AmNO0xyHX8NImvNqHtfzWPx4SZiKM

Entry address:
0x1D7CB

Entry point:
E8, 85, 63, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 56, 8D, 45, 08, 50, 8B, F1, E8, 82, FC, FF, FF, C7, 06, 20, B2, 42, 00, 8B, C6, 5E, 5D, C2, 04, 00, C7, 01, 20, B2, 42, 00, E9, 37, FD, FF, FF, 8B, FF, 55, 8B, EC, 56, 8B, F1, C7, 06, 20, B2, 42, 00, E8, 24, FD, FF, FF, F6, 45, 08, 01, 74, 07, 56, E8, 52, CA, FF, FF, 59, 8B, C6, 5E, 5D, C2, 04, 00, 8B, FF, 55, 8B, EC, 56, 57, 8B, 7D, 08, 8B, 47, 04, 85, C0, 74, 47, 8D, 50, 08, 80, 3A, 00, 74, 3F, 8B, 75, 0C, 8B, 4E, 04, 3B, C1, 74, 14, 83, C1, 08...
 
[+]

Entropy:
7.9990  (probably packed)

Code size:
162 KB (165,888 bytes)

The file nrt_v2.1.6.sfx.exe has been seen being distributed by the following 50 URLs.

https://qc3.androidfilehost.com/dl/Zl7Bsqc2bnXhS2hxWZrdoA/1471475247/.../NRT_v2.1.6.sfx.exe

https://az1.androidfilehost.com/dl/5MaKFalvuK5LD94Fozbs8g/1471596468/.../NRT_v2.1.6.sfx.exe

https://qc3.androidfilehost.com/dl/XohnxXWk6rzbLbu913IMTg/1471258350/.../NRT_v2.1.6.sfx.exe

http://fr1.androidfilehost.com/dl/dTaDvJK8rju7nPzJxvkhcA/1468454256/.../NRT_v2.1.6.sfx.exe

https://qc3.androidfilehost.com/dl/bEFrLe0-oA8Sv3dbjXQ8ZQ/1471885203/.../NRT_v2.1.6.sfx.exe

http://qc4.androidfilehost.com/dl/6HBs_46wsVHdh35UtHibJg/1468132354/.../NRT_v2.1.6.sfx.exe

https://qc3.androidfilehost.com/dl/y_VbEuaAIwceydWAQXeK5A/1469338256/.../NRT_v2.1.6.sfx.exe

https://qc3.androidfilehost.com/dl/vb9HcL2H7hfWL2qkXbYslA/1472117614/.../NRT_v2.1.6.sfx.exe

https://tx1.androidfilehost.com/dl/JlH38TummLrF1P1i8mje-g/1469984531/.../NRT_v2.1.6.sfx.exe

https://qc3.androidfilehost.com/dl/s3qX2U26C6J3lMQ7S6coQg/1470646853/.../NRT_v2.1.6.sfx.exe

http://download1014.mediafire.com/bcwrjljmo3vg/.../NRT_v2.1.6.sfx.exe

http://qc4.androidfilehost.com/dl/CGjbkh3PhM3hJFrHp4g7GA/1469211874/.../NRT_v2.1.6.sfx.exe

https://qc3.androidfilehost.com/dl/QzLdK2Atd3kUyitOguU_vg/1471788582/.../NRT_v2.1.6.sfx.exe

http://tx2.androidfilehost.com/dl/8Vj-55Aria97n6jdd0pBRQ/1469220015/.../NRT_v2.1.6.sfx.exe

http://qc4.androidfilehost.com/dl/CFd3tpbhuOccuioFc7u06Q/1470740759/.../NRT_v2.1.6.sfx.exe

https://qc3.androidfilehost.com/dl/9SSxsn5zWepUsUTm4mwnCw/1469875206/.../NRT_v2.1.6.sfx.exe

http://qc4.androidfilehost.com/dl/7vHZNgXKHfaStrhqqhaQBQ/1467871201/.../NRT_v2.1.6.sfx.exe

http://download715.mediafire.com/th5igaxnx2rg/.../NRT_v2.1.6.sfx.exe

http://fr1.androidfilehost.com/dl/s-FIZ5LhR-SE-HndFe5kbQ/1466315347/.../NRT_v2.1.6.sfx.exe

https://de1.androidfilehost.com/dl/Txey0jll2DJLELzTtFfDyg/1469326623/.../NRT_v2.1.6.sfx.exe

https://de1.androidfilehost.com/dl/p_Ei4BPN2rge9jaMKifLgw/1471359155/.../NRT_v2.1.6.sfx.exe

http://download.softpedia.com/dl/7165e1c2aa2615343d42de95b7ebd221/5768bcc5/100213077/software/.../NRT_v2.1.6.sfx.exe

http://fr1.androidfilehost.com/dl/3PQuxPSzVCxpoEfW5DcHtw/1469851634/.../NRT_v2.1.6.sfx.exe

https://az1.androidfilehost.com/dl/vXHVMnisXR7cBX2czOG1Gg/1467848199/.../NRT_v2.1.6.sfx.exe

https://tx1.androidfilehost.com/dl/XbgxStR8gIURfW4sI6-Hlg/1466585759/.../NRT_v2.1.6.sfx.exe

https://qc3.androidfilehost.com/dl/E2pSioNNiijmactW-UYzEg/1467115932/.../NRT_v2.1.6.sfx.exe

https://de1.androidfilehost.com/dl/O7JlS1JfHeLXMSD8DkQ8Pw/1471317380/.../NRT_v2.1.6.sfx.exe

https://ga1.androidfilehost.com/dl/ABQhwizAmWBgOH-X9Pz1VA/1470652234/.../NRT_v2.1.6.sfx.exe

https://az1.androidfilehost.com/dl/Pno9LLsfsHI2y0T55kBT9Q/1468117401/.../NRT_v2.1.6.sfx.exe

https://qc3.androidfilehost.com/dl/HgO7GCbAKBONJbLmdSyFZQ/1468447425/.../NRT_v2.1.6.sfx.exe

Latest 30 of 66 download URLs

Scan nrt_v2.1.6.sfx.exe - Powered by Reason Core Security