overwolfinstaller.exe

Overwolf Installer

Overwolf Ltd

Publisher:
Overwolf  (signed by Overwolf Ltd)

Product:
Overwolf Installer

Version:
1.41.0.0

MD5:
8329d4cdddb22903762ecfa5ba1772c0

SHA-1:
53931914c0bac935d4ce9d6a69aa920d8bce720f

SHA-256:
e32a108e5e3aecd91c84bedb7c9f1ed69d202aa0b976aba9f0b2a9677535e953

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/28/2024 7:29:16 AM UTC  (today)

File size:
1.6 MB (1,704,176 bytes)

Product version:
1.41.0.0

Copyright:
Copyright © Overwolf 2015

Original file name:
OWInstaller.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\overwolfinstaller.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
11/22/2014 6:00:00 PM

Valid to:
2/21/2017 5:59:59 PM

Subject:
CN=Overwolf Ltd, O=Overwolf Ltd, L=Tel-Aviv, S=Israel, C=IL

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1249C91E5611F73BD94274B6C30DDE54

File PE Metadata
Compilation timestamp:
8/11/2015 7:31:24 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:IM8d/ucxs8reVfk8KlRi583WKd3IkVYL2rVvCx7ZVqGoI9f:Vms8reVfJKlQ5IWwIkVYL2RqZ3oO

Entry address:
0x19965E

Entry point:
FF, 25, 6C, 96, 59, 00, 00, 00, 00, 00, 00, 00, 00, 00, 40, 96, 19, 00, 00, 00, 00, 00, 00, 00, 00, 00, 2C, F9, C9, 55, 00, 00, 00, 00, 02, 00, 00, 00, 6E, 00, 00, 00, 90, 96, 19, 00, 90, 78, 19, 00, 52, 53, 44, 53, 4E, 85, 51, A1, 1A, 87, 82, 48, B9, EA, 43, 26, B7, F8, 36, 21, 01, 00, 00, 00, 43, 3A, 5C, 4F, 76, 65, 72, 77, 6F, 6C, 66, 5C, 49, 6E, 44, 65, 76, 5C, 4D, 61, 69, 6E, 44, 65, 76, 5C, 53, 6F, 75, 72, 63, 65, 5C, 4F, 57, 49, 6E, 73, 74, 61, 6C, 6C, 65, 72, 5C, 4F, 57, 49, 6E, 73, 74, 61, 6C, 6C...
 
[+]

Entropy:
6.2928

Code size:
1.6 MB (1,669,120 bytes)

The file overwolfinstaller.exe has been seen being distributed by the following 13 URLs.

blob:A2CCF18C-8E29-463E-A3A7-D1AF671C3E91

http://overwolf.fr.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAMCwgnP4SN6ceDryJz7PbJv3FQNYWEuR8Z8QB0MlMcx96D6R55xPcjh/.../7FElngiQk=

http://overwolf.de.softonic.com/download-tracker?th=1/6CH9aeXedl4L8u BHNJXWTW LP1LFlnGQpxqjlxAMCwgnP4SN6ceDryJz7PbJv3FQNYWEuR8Z8QB0MlMcx96D6R55xPcjh/.../7FElngiQk=

Scan overwolfinstaller.exe - Powered by Reason Core Security